Running Trusted Signatures in Apptainer

Is it possible to lock down execution to only allow containers that have trusted signatures run?

The answer: yes! There is an execution control list function that exists globally for the system. This allows you to specify containers under a certain path, block containers with certain signatures, require all signatures in a list to be present, or you can give it a list of trusted signatures.

To learn more, email us at [email protected]