返回全部动态
LiteLLM 发布 v1.104.0-dev.1:镜像签名验证与认证安全增强
原标题:v1.104.0-dev.1
AI 摘要
LiteLLM 发布 v1.104.0-dev.1 开发版本,所有 Docker 镜像使用 cosign 签名,并提供了基于固定 commit hash 和 release tag 的两种验证方式。本次更新包含多项认证安全增强(泄露密码检测、自助改密、强制重置密码)、代理性能优化、OpenRouter 价格同步以及大量 UI 死代码清理。
以上摘要由 AI 生成,可能存在误差。事实请以原文为准。
正文节选
## Verify Docker Image Signature All LiteLLM Docker images are signed with [cosign](https://docs.sigstore.dev/cosign/overview/). Every release is signed with the same key introduced in [commit `0112e53`](https://github.com/BerriAI/litellm/commit/0112e53046018d726492c814b3644b7d376029d0). **Verify using the pinned commit hash (recommended):** A commit hash is cryptographically immutable, so this is the strongest way to ensure you are using the original signing key: ```bash cosign verify \ -
发布时间:2026-09-23 11:24
抓取时间:2026-09-23 11:31
来源机构:BerriAI