AkihiroSuda / instance-per-podLinks
Create a dedicated IaaS instance per Pod to mitigate container breakout (including CPU vulnerabilities depending on the instance type)
☆22Updated 5 years ago
Alternatives and similar repositories for instance-per-pod
Users that are interested in instance-per-pod are comparing it to the libraries listed below
Sorting:
- Inspired by https://cnab.io/, sheaf manages bundles of Kubernetes components.☆30Updated 5 years ago
- A library for representing OCI image layers in an abstract filesystem☆27Updated 5 years ago
- Hack to run ansible as a Kubernetes daemonset on Container Linux☆38Updated 7 years ago
- ⭕️Snooping on the Kubernetes OpenAPI communications☆96Updated this week
- This tool allows using a SPIFFE JWT to authenticate to AWS APIs☆34Updated last month
- Write controller-runtime based k8s controllers that read/write to git, not k8s☆48Updated 4 years ago
- Generate K8s RBAC policies based on e2e test runs☆28Updated 4 years ago
- Simple example for using an in-cluster BuildKit instance for container builds☆19Updated 6 years ago
- A Go library for implementing GitOps, used by Ignite☆66Updated 2 years ago
- Funding requests for project infrastructure, events, and consulting.☆18Updated last year
- 🏆 CNCF Community Awards☆24Updated 3 months ago
- Use OpenFaaS functions as Kubernetes Validating Admission Webhook☆23Updated 2 years ago
- Infranetes - Managing virtual infrastructure the Kubernetes way☆34Updated 6 years ago
- A tool to build OCI compliant images☆67Updated 4 years ago
- ☆32Updated 5 years ago
- ☆33Updated 7 months ago
- Running Openshift on Footloose, docker in docker☆26Updated 6 years ago
- A light-weight debugging tool for Knative's system components☆45Updated 5 years ago
- Kubernetes security scanner based on the open-source container vulnerability scanner Trivy.☆23Updated 4 years ago
- Stupid simple controller to create local k3s clusters☆10Updated 5 years ago
- GitOps by Commit Hash☆47Updated 5 years ago
- Kubernetes job runner☆42Updated 5 years ago
- Kubernetes Admission Controller for Image Scanning using OPA☆50Updated last year
- A VMware cloud native podcast. Exploring cloud native, one buzzword at a time!☆25Updated 2 years ago
- A trivial wrapper around spf13/cobra to simplify some basic patterns☆22Updated last year
- cloud native software supply chain ☁️🔗☆63Updated 4 years ago
- Operator deploying the Observatorium project☆14Updated last year
- Grafana multi tenant operator☆27Updated 3 weeks ago
- Pluggable generator for creating, using and sharing reusable templates that can be applied directly, generated into operator, helm chart …☆11Updated 4 years ago
- Anchore Image Validator lets you automatically detect or block security issues just before a Kubernetes pod starts.☆44Updated 2 years ago