Docker DevOps Foundations — References
- Author & Course Lead — Badr Tajini
- ESILV · 2026–2027
- Links checked: 2026-09-21
These official references explain the words and behaviors used in the course.
They supplement the lab briefs. The course's locked versions, commands and
access rules remain the authority for assessed work; do not install a floating
latest release because a documentation page shows one.
Docker and Compose
- Install Docker Engine on Ubuntu — official Engine installation, supported Ubuntu releases and host-firewall warnings. The course uses its locked Ubuntu 24.04 amd64 host contract.
- Install Docker Compose — the Linux Compose plugin is the course path when Engine and the CLI are installed. The standalone binary is documented as legacy.
- Compose file reference — syntax for the
compose.yamlthat you inspect and test in the labs. - Trust model for Compose files — a Compose file is executable input. Review the complete output of
docker compose configbefore running an unfamiliar file. - Compose secrets reference and Manage secrets securely in Compose — secrets are granted per service and mounted as files under
/run/secrets/. Never commit or print a secret value.
Open standards
- OCI Runtime Specification v1.3.0 — versioned runtime and lifecycle vocabulary.
- OCI Image Specification v1.1.1 — manifests, configurations, descriptors and layers.
- OCI Distribution Specification v1.1.1 — the registry distribution API used when discussing image push and pull.
- SLSA Specification v1.2 — provenance, attestations, tracks and levels. A course evidence pack is not automatically SLSA-conformant.
Security and delivery practice
- NIST SP 800-190: Application Container Security Guide — a government security guide published in 2017. Use it for threat and control vocabulary; use Docker's current documentation for command behavior.
- DORA: Continuous integration — frequent integration into the shared mainline, quick automated feedback and prompt repair of a broken build.
- DORA: Continuous delivery — keeping software deployable and releasable on demand; this is different from automatically deploying every change.
- DORA Research: 2025 — public overview of the State of AI-assisted Software Development report. The detailed report download may request contact details; the course relies only on the public overview and makes no claim about unretrieved full text.
Reading rule
These links were checked on the date above and may change. Read the exact section needed for a lab and keep a static, course-provided route if an external page is unavailable. No external graphics, code or report pages are copied into the course. Links are provided for attribution and further study.