nmfs-opensci / container-images Goto Github PK
View Code? Open in Web Editor NEWThe docker stack for data science applications for NOAA Fisheries
Home Page: https://nmfs-opensci.github.io/container-images/
License: Apache License 2.0
The docker stack for data science applications for NOAA Fisheries
Home Page: https://nmfs-opensci.github.io/container-images/
License: Apache License 2.0
Dear Hub Champion,
If you are not using custom-built images for your JupyterHub, then 2i2c has already taken action to secure your hub. Please disregard the rest of this message.
We would like you to be aware of a potential vulnerability for JupyterHubs. If you are using a custom image with jupyter-server-proxy installed, then please take action to secure your hub. The affected versions are <=4.1.0 and <=3.2.2 and may be pulled in as a dependency of other packages.
Recommended actions
If your custom image is based on an upstream community image, then update your base image to the latest version
If your custom image is using pip, conda or similar, then you may need to explicitly pin all of your packages to versions compatible with patched versions of jupyter-server-proxy
Once you have updated and re-built your image, test that it is indeed using a patched version >=4.1.1, >=3.2.3 of jupyter-server-proxy.
See the security advisory on GitHub for full details and instructions on how to check for this vulnerability GHSA-w3vc-fx9p-wp4v.
Optional: A note on upgrading JupyterHub
You may also want to take this opportunity to upgrade your custom image to JupyterHub version >=4.1.0 to address a separate JupyterHub vulnerability GHSA-7r3h-4ph8-w38g. You may experience XSRF and 403 bugs in JupyterHub versions 4.1.0 โ 4.1.4, therefore we recommend
upgrading JupyterHub to >=4.1.5
upgrading nbgitpuller to >=1.2.1 (if using)
upgrading jupyterhub-singleuser to the latest version (if using conda/mamba)
You are receiving this email because you are noted as a 'technical contact' for your community. If you do not wish to receive such emails or there is someone else in your organization who should be receiving this kind of email, please let me know at [email protected]. Thank you!
Best wishes,
Jenny Wong
2i2c
Major hack to only show the snakemake and qiime2 kernels
jupyterhub/jupyterhub#2759
customize the launcher https://jupyter-app-launcher.readthedocs.io/en/latest/
https://www.nesdis.noaa.gov/events/ams-course-making-beautiful-images-of-noaa-satellite-data-using-python
[email protected]
error
git command not found - please ensure you have Git > 2 installed
Just an idea to possibly help streamline codespace environment generation and setup
Re our repo2docker convo for building dockerfiles for jupyterhub. See how the CryoCloud 2i2c hub does this.
GitHub action to build: https://github.com/CryoInTheCloud/hub-image/blob/main/.github/workflows/build.yaml
Build files: https://github.com/CryoInTheCloud/hub-image/tree/main
There are GitHub Actions for other tasks too like making the binder badge.
Goal images that open reasonably well in
Have following features
Can layer. might be better
https://forum.qiime2.org/t/docker-image-with-qiime-and-jupyter/7206/2
A declarative, efficient, and flexible JavaScript library for building user interfaces.
๐ Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. ๐๐๐
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google โค๏ธ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.