AkihiroSuda / instance-per-pod
Create a dedicated IaaS instance per Pod to mitigate container breakout (including CPU vulnerabilities depending on the instance type)
☆22Updated 5 years ago
Alternatives and similar repositories for instance-per-pod:
Users that are interested in instance-per-pod are comparing it to the libraries listed below
- A library for representing OCI image layers in an abstract filesystem☆27Updated 4 years ago
- Inspired by https://cnab.io/, sheaf manages bundles of Kubernetes components.☆30Updated 4 years ago
- A simple Cluster API provisioner using SSH☆17Updated 5 years ago
- Simple example for using an in-cluster BuildKit instance for container builds☆19Updated 5 years ago
- A tool to handle the retagging of third party container images☆26Updated last week
- Infranetes - Managing virtual infrastructure the Kubernetes way☆34Updated 6 years ago
- This tool allows using a SPIFFE JWT to authenticate to AWS APIs☆34Updated 9 months ago
- Inject Falco and pdig into a running kubernetes pod☆13Updated 4 years ago
- Generate K8s RBAC policies based on e2e test runs☆28Updated 3 years ago
- Kubernetes Controller for managing Github☆38Updated last year
- ☆33Updated last month
- A Go library for implementing GitOps, used by Ignite☆66Updated last year
- Hack to run ansible as a Kubernetes daemonset on Container Linux☆37Updated 7 years ago
- Packaging pipeline for Envoy☆15Updated 3 years ago
- A Cluster API Infrastructure Provider implementation using Kubernetes itself as the infrastructure☆34Updated 3 years ago
- Kubernetes node administration tool☆19Updated 5 years ago
- Write controller-runtime based k8s controllers that read/write to git, not k8s☆48Updated 3 years ago
- Kubernetes security scanner based on the open-source container vulnerability scanner Trivy.☆23Updated 4 years ago
- A tool to white list node and developer IPs for kubernetes.☆14Updated last year
- Use OpenFaaS functions as Kubernetes Validating Admission Webhook☆23Updated last year
- A mixin for monitoring multiple Linkerd 2 meshes from a single Grafana instance☆12Updated 5 years ago
- Community driven comparison of modern open source configuration management languages, patterns and solutions.☆9Updated 4 years ago
- Determine your cloud provider with a simple HTTP call☆51Updated 3 years ago
- Organises Kubernetes manifests into a standard format☆15Updated 2 months ago
- Kubernetes event gateway for Brigade v1☆27Updated 2 years ago
- A command-line tool and Kubernetes controller to sync EKS clusters into ArgoCD cluster secrets☆13Updated 4 years ago
- Lint your Rego policies inside of Visual Studio Code☆15Updated 9 months ago
- Grafana multi tenant operator☆27Updated 3 months ago
- ☆24Updated 3 years ago
- Unofficial containerd nightly builds☆15Updated last year