Share this
GitHub 3.0: Interview with Steve Fargher
by Stephanie Wallis on 23 February 2021
Steve Fargher is a Senior Consultant specialising in DevOps and Agile, based in our Wellington office.
Steve is Equinox IT's GitHub lead and here he talks about the updates to GitHub Enterprise Server 3.0 and the potential its changes bring to DevOps security. Equinox IT is a GitHub Verified Partner.
What's new in GitHub Enterprise Server 3.0?
GitHub Enterprise Server 3.0 is introducing a couple of major things that we haven't seen before and it's bringing to general availability a couple of bits and pieces as well. So, we've got GitHub Actions which is the YAML-driven pipelines in GitHub Enterprise Server and GitHub, and also Packages which is a way that we can store our code and our artefacts for consumption by other projects and pipelines. Bringing these two things together is an exciting new change to GitHub Enterprise Server and it allows us to create some end-to-end DevOps workflows. It also allows us to define security policies for access, it's introducing the ability to have self-hosted runners which is something quite new to GitHub, though it has been talked about for a while. There is the mobile app, which I've personally been using for quite a while, it has just become general availability (GA) – so you can use your mobile app to interact with GitHub and your teams can use it to make updates and see the status of things.
What are you excited about?
Two things that really interest me about GitHub Enterprise Server 3.0 are the code scanning and the secret scanning stuff as part of the GitHub Advanced Security. GitHub Advanced Security is something they talked a lot about in our Partner Bootcamps and one of the cool things that it brings is the code scanning. So, there has been an element of code scanning previously in GitHub but this brings it into GA. The code scanning is powered by CodeQL which is a very powerful scripting language. The secret scanning as part of that security offering is currently in beta but will be in GA soon and it gives the ability to detect credentials in code when pushed to Git. For me this is really cool because I am quite passionate about security in DevOps.
The secret scanning is something we have had to do for our customers in the past as a manual process and it has been quite painful and extremely time consuming. By GitHub bringing this into the Enterprise Server as a native function it brings a lot of security and assures the end users that they are storing code securely and without secrets and credentials in it, which is really important.
The mobile app, I think, is really cool as well. One thing that the competitors to GitHub don't have is that mobile app to give you access to your code and repositories and pipelines, and to keep things flowing while you are on the go.
What potential do you see in the update?
I think the biggest potential is in the Actions and the Packages now being in together, and the ability for us to build artefacts, store those packages - and we can use Nuget, NPM, Maven, Docker, and any other containerisation. It allows us to build and store standard packages that we can then consume in other pipelines using Actions, and Actions, itself, is an awesome product. The security and integration around Actions and having Packages with that, I think that has got huge potential for GitHub and GitHub Enterprise Server.
copyright: GitHub Packages
Share this
- Agile Development (153)
- Software Development (126)
- Agile (76)
- Scrum (66)
- Application Lifecycle Management (50)
- Capability Development (47)
- Business Analysis (46)
- DevOps (43)
- IT Professional (42)
- Equinox IT News (41)
- Agile Transformation (38)
- IT Consulting (38)
- Knowledge Sharing (36)
- Lean Software Development (35)
- Requirements (35)
- Strategic Planning (35)
- Solution Architecture (34)
- Digital Disruption (32)
- IT Project (31)
- International Leaders (31)
- Digital Transformation (26)
- Project Management (26)
- Cloud (25)
- Azure DevOps (23)
- Coaching (23)
- IT Governance (23)
- System Performance (23)
- Change Management (20)
- Innovation (20)
- MIT Sloan CISR (15)
- Client Briefing Events (13)
- Architecture (12)
- Working from Home (12)
- IT Services (10)
- Data Visualisation (9)
- Kanban (9)
- People (9)
- Business Architecture (8)
- Communities of Practice (8)
- Continuous Integration (7)
- Business Case (4)
- Enterprise Analysis (4)
- Angular UIs (3)
- Business Rules (3)
- GitHub (3)
- Java Development (3)
- Lean Startup (3)
- Satir Change Model (3)
- API (2)
- Automation (2)
- Scaling (2)
- Security (2)
- Toggles (2)
- .Net Core (1)
- AI (1)
- Diversity (1)
- Testing (1)
- ✨ (1)
- August 2024 (1)
- February 2024 (3)
- January 2024 (1)
- September 2023 (2)
- July 2023 (3)
- August 2022 (4)
- August 2021 (1)
- July 2021 (1)
- June 2021 (1)
- May 2021 (1)
- March 2021 (1)
- February 2021 (2)
- November 2020 (2)
- September 2020 (1)
- July 2020 (1)
- June 2020 (3)
- May 2020 (3)
- April 2020 (2)
- March 2020 (8)
- February 2020 (1)
- November 2019 (1)
- August 2019 (1)
- July 2019 (2)
- June 2019 (2)
- April 2019 (3)
- March 2019 (2)
- February 2019 (1)
- December 2018 (3)
- November 2018 (3)
- October 2018 (3)
- September 2018 (1)
- August 2018 (4)
- July 2018 (5)
- June 2018 (1)
- May 2018 (1)
- April 2018 (5)
- March 2018 (3)
- February 2018 (2)
- January 2018 (2)
- December 2017 (2)
- November 2017 (3)
- October 2017 (4)
- September 2017 (5)
- August 2017 (3)
- July 2017 (3)
- June 2017 (1)
- May 2017 (1)
- March 2017 (1)
- February 2017 (3)
- January 2017 (1)
- November 2016 (1)
- October 2016 (6)
- September 2016 (1)
- August 2016 (5)
- July 2016 (3)
- June 2016 (4)
- May 2016 (7)
- April 2016 (13)
- March 2016 (8)
- February 2016 (8)
- January 2016 (7)
- December 2015 (9)
- November 2015 (12)
- October 2015 (4)
- September 2015 (2)
- August 2015 (3)
- July 2015 (8)
- June 2015 (7)
- April 2015 (2)
- March 2015 (3)
- February 2015 (2)
- December 2014 (4)
- September 2014 (2)
- July 2014 (1)
- June 2014 (2)
- May 2014 (9)
- April 2014 (1)
- March 2014 (2)
- February 2014 (2)
- December 2013 (1)
- November 2013 (2)
- October 2013 (3)
- September 2013 (2)
- August 2013 (6)
- July 2013 (2)
- June 2013 (1)
- May 2013 (4)
- April 2013 (5)
- March 2013 (2)
- February 2013 (2)
- January 2013 (2)
- December 2012 (1)
- November 2012 (1)
- October 2012 (2)
- September 2012 (3)
- August 2012 (3)
- July 2012 (3)
- June 2012 (1)
- May 2012 (1)
- April 2012 (1)
- February 2012 (1)
- December 2011 (4)
- November 2011 (2)
- October 2011 (2)
- September 2011 (4)
- August 2011 (2)
- July 2011 (3)
- June 2011 (4)
- May 2011 (2)
- April 2011 (2)
- March 2011 (3)
- February 2011 (1)
- January 2011 (4)
- December 2010 (2)
- November 2010 (3)
- October 2010 (1)
- September 2010 (1)
- May 2010 (1)
- February 2010 (1)
- July 2009 (1)
- April 2009 (1)
- October 2008 (1)