AkihiroSuda / instance-per-podLinks
Create a dedicated IaaS instance per Pod to mitigate container breakout (including CPU vulnerabilities depending on the instance type)
☆23Updated 5 years ago
Alternatives and similar repositories for instance-per-pod
Users that are interested in instance-per-pod are comparing it to the libraries listed below
Sorting:
- A library for representing OCI image layers in an abstract filesystem☆27Updated 4 years ago
- Unofficial containerd nightly builds☆15Updated last year
- A trivial wrapper around spf13/cobra to simplify some basic patterns☆22Updated last year
- 🏆 CNCF Community Awards☆25Updated 3 weeks ago
- A High-Availability distribution of Knative.☆20Updated last year
- This tool allows using a SPIFFE JWT to authenticate to AWS APIs☆34Updated last year
- Simple example for using an in-cluster BuildKit instance for container builds☆19Updated 6 years ago
- Funding requests for project infrastructure, events, and consulting.☆17Updated last year
- A tool to handle the retagging of third party container images☆26Updated last week
- A tool to white list node and developer IPs for kubernetes.☆14Updated last year
- Inspired by https://cnab.io/, sheaf manages bundles of Kubernetes components.☆30Updated 4 years ago
- Kilt is a project that defines how to inject foreign apps into containers☆13Updated last year
- A step-by-step walkthrough of bootstrapping a Kubernetes operator☆21Updated 6 years ago
- Lint your Rego policies inside of Visual Studio Code☆16Updated last year
- Inject Falco and pdig into a running kubernetes pod☆13Updated 5 years ago
- Kubernetes Controller for managing Github☆39Updated 2 years ago
- Infranetes - Managing virtual infrastructure the Kubernetes way☆34Updated 6 years ago
- ☆32Updated 5 years ago
- Kubernetes admission webhook that uses cosign verify to check the subject and issuer of the image matches what you expect☆23Updated last week
- A Prometheus-format exporter to report on DockerHub per-image rate limits☆11Updated 2 weeks ago
- Generate K8s RBAC policies based on e2e test runs☆28Updated 3 years ago
- Use OpenFaaS functions as Kubernetes Validating Admission Webhook☆23Updated 2 years ago
- Kubernetes security scanner based on the open-source container vulnerability scanner Trivy.☆23Updated 4 years ago
- A Go library for implementing GitOps, used by Ignite☆66Updated last year
- Kubernetes event gateway for Brigade v1☆27Updated 3 years ago
- Kubernetes Admission Controller for Image Scanning using OPA☆51Updated last year
- Pluggable generator for creating, using and sharing reusable templates that can be applied directly, generated into operator, helm chart …☆11Updated 4 years ago
- Hack to run ansible as a Kubernetes daemonset on Container Linux☆37Updated 7 years ago
- A 'kubectl' plugin that provides insight into the topology of a Kubernetes cluster.☆35Updated 2 years ago
- A Kubernetes Controller that will ensure that the EC2 Source Destination Check (source-dest-check attribute) is disabled on nodes within …☆18Updated 4 years ago