bloomberg / spire-tpm-plugin
Provides agent and server plugins for SPIRE to allow TPM 2-based node attestation.
☆71Updated last year
Related projects: ⓘ
- vault-auth-spire is an authentication plugin for Hashicorp Vault which allows logging into Vault using a Spire provided SVID.☆41Updated last year
- The SPIFFE Helper is a tool that can be used to retrieve and manage SVIDs on behalf of a workload☆43Updated this week
- This tool allows using a SPIFFE JWT to authenticate to AWS APIs☆34Updated 3 months ago
- Go implementation for CNAB content trust verification using TUF, Notary, and in-toto☆31Updated last year
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆55Updated this week
- ☆42Updated this week
- verify https assets with a public transparency log☆75Updated 2 years ago
- Kubernetes operator for Falco that allows developers to manage rules for detecting intruders and backdoors☆68Updated 4 years ago
- Container Storage Interface components for SPIFFE☆53Updated last month
- ☆35Updated 2 years ago
- ☆84Updated 3 months ago
- 🎟 Voucher creates attestations for Binary Authorization☆73Updated 2 months ago
- Virtual k8s cluster for testing.☆83Updated 4 years ago
- A Kubernetes CSI plugin to automatically mount SPIFFE certificates to Pods using ephemeral volumes☆69Updated this week
- Integrates Spiffe and Vault to have secretless authentication☆82Updated last week
- Sigstore Policy Controller - an admission controller that can be used to enforce policy on a Kubernetes cluster based on verifiable supp…☆123Updated last week
- ☆61Updated 4 months ago
- sigstore the hard way!☆110Updated 4 months ago
- ⭕️Snooping on the Kubernetes OpenAPI communications☆87Updated this week
- Stuff to make standing up sigstore (esp. for testing) easier for e2e/integration testing.☆57Updated this week
- A kubectl plugin which triggers a Sysdig capture☆99Updated last year
- Anchore Kubernetes Inventory can poll Kubernetes Cluster API(s) to tell Anchore Enterprise which Containers and Images are currently in-u…☆62Updated this week
- Add digests to container and init container images in Kubernetes pod and pod template specs. Use either as a mutating admission webhook, …☆117Updated 3 weeks ago
- Envoy External Authorization API Bridge To SPIFFE Workload API☆46Updated 3 years ago
- Plugin for Helm to integrate the sigstore ecosystem☆59Updated 2 weeks ago
- Service implementation for a Kubernetes Dynamic Webhook controller for interacting with Anchore☆63Updated last week
- ☆19Updated last month
- ☆32Updated 4 years ago
- Container image provenance spec that allows tracing CVEs detected in registry images back to a CVE's source of origin.☆40Updated 10 months ago
- A specification for signing methods and formats used by Secure Systems Lab projects.☆66Updated last week