accuknox / discovery-engineLinks
Discover least permissive security posture, Network Microsegmentation, and Application behaviour based on visibility/observability data emitted from policy engines..
☆34Updated last month
Alternatives and similar repositories for discovery-engine
Users that are interested in discovery-engine are comparing it to the libraries listed below
Sorting:
- Community curated list of System and Network policy templates for the KubeArmor and Cilium☆44Updated 2 months ago
- Intent driven security automation framework☆25Updated 2 months ago
- Tutorials about Cilium and SPIRE integration☆30Updated 3 years ago
- This projects contains pre-made policies for Kubernetes Validating Admission Policies. This policy library is based on Kubescape controls…☆55Updated last month
- Find your favorite eBee☆68Updated 2 months ago
- Runtime detection and response for malicious events in Kubernetes workloads☆45Updated last year
- KubeArmor cli tool aka kArmor☆43Updated this week
- Ingress node firewall implements Kubernetes operator to provision stateless ingress node level firewall rules, stateless ingress node fir…☆56Updated last month
- agent for handling seccomp descriptors for container runtimes☆46Updated last year
- sigstore the hard way!☆112Updated last year
- Administrative tooling for Falco☆107Updated last week
- A place for policy work group related proposals and prototypes.☆67Updated last month
- A Kubernetes CSI plugin to automatically mount SPIFFE certificates to Pods using ephemeral volumes☆79Updated this week
- Falco plugins registry☆97Updated this week
- Generate a variety of suspect actions that are detected by Falco rulesets☆105Updated 3 weeks ago
- sigstore installation walkthrough, local☆60Updated last year
- Anchore Kubernetes Inventory can poll Kubernetes Cluster API(s) to tell Anchore Enterprise which Containers and Images are currently in-u…☆65Updated last week
- k8tls (pronounced cattles), to assess server port security by detecting its TLS and certificates configuration.☆20Updated last month
- This repo addresses further work involving Kubernetes network security beyond the initial NetworkPolicy resource☆66Updated last month
- kubectl plugin for signing Kubernetes manifest YAML files with sigstore☆84Updated last week
- Container Storage Interface components for SPIFFE☆61Updated this week
- The plumber you'll hire to install all your Kubernetes network plumbing☆22Updated 2 weeks ago
- Kubernetes Operator to manage node maintenance through NodeMaintenance custom resources☆39Updated 2 months ago
- ☆20Updated 2 weeks ago
- Sigstore Policy Controller - an admission controller that can be used to enforce policy on a Kubernetes cluster based on verifiable supp…☆133Updated this week
- Tools for understanding, measuring, and applying network policies effectively in kubernetes☆116Updated 11 months ago
- Scans SBOMs for vulnerabilities with Grype☆82Updated this week
- Kubernetes network policies☆57Updated last month
- 🔮 ✈️ to integrate OPA Gatekeeper's new ExternalData feature with cosign to determine whether the images are valid by verifying their sig…☆78Updated last year
- DraNet is a Kubernetes Network Driver that uses Dynamic Resource Allocation (DRA) to deliver high-performance networking for demanding ap…☆83Updated this week