cert-manager / csi-lib
A library for building CSI drivers that request certificates from cert-manager
☆14Updated this week
Related projects: ⓘ
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆55Updated this week
- @crossplane Providers as a Function (PaaF)☆25Updated 3 years ago
- The SPIFFE Helper is a tool that can be used to retrieve and manage SVIDs on behalf of a workload☆43Updated this week
- ☆19Updated last month
- Go implementation for CNAB content trust verification using TUF, Notary, and in-toto☆31Updated last year
- This tool allows using a SPIFFE JWT to authenticate to AWS APIs☆34Updated 3 months ago
- Provides agent and server plugins for SPIRE to allow TPM 2-based node attestation.☆71Updated last year
- Play with KinD and OIDC volumes☆15Updated 2 years ago
- ☆35Updated 2 years ago
- SPIRE Plugin service definitions and scaffolding☆15Updated last week
- A Cluster API Infrastructure Provider implementation using Kubernetes itself as the infrastructure☆34Updated 3 years ago
- Container Storage Interface components for SPIFFE☆53Updated last month
- Platform API as Configuration☆11Updated 4 years ago
- sigstore installation walkthrough, local☆54Updated 4 months ago
- ORAS (OCI registry as storage) container storage interface☆15Updated 3 months ago
- Interfaces and implementations for building Kubernetes releases.☆16Updated last week
- Release tooling for KubeBuilder projects.☆18Updated this week
- vault-auth-spire is an authentication plugin for Hashicorp Vault which allows logging into Vault using a Spire provided SVID.☆41Updated last year
- Record DNS lookups and convert them into service registry entries☆48Updated 5 years ago
- A Kubernetes CSI plugin to automatically mount SPIFFE certificates to Pods using ephemeral volumes☆69Updated this week
- 🔮 ✈️ to integrate OPA Gatekeeper's new ExternalData feature with cosign to determine whether the images are valid by verifying their sig…☆75Updated 5 months ago
- Kubernetes Webhook Authenticator that allows for dynamic registration of OpenID Connect providers☆47Updated last month
- Template Go app repo with local test/lint/build/vulnerability check workflow, and on tag image test/build/release pipelines, with ko gene…☆50Updated 4 months ago
- ☆79Updated last year
- Kubernetes controller manager that reconciles workload registration and federation relationships.☆53Updated this week
- A Cilium cluster mesh between two kind clusters for testing purposes.☆34Updated 2 years ago
- 🔍 Rekor transparency log monitoring and alerting☆26Updated 11 months ago
- Stuff to make standing up sigstore (esp. for testing) easier for e2e/integration testing.☆57Updated this week
- ☆90Updated this week
- Go library for Sigstore signing and verification☆16Updated 11 months ago
- Envoy External Authorization API Bridge To SPIFFE Workload API☆46Updated 3 years ago