elinesterov / awesome-spiffe-spire
Curated list of SPIFFE and SPIRE resources
☆52Updated 2 years ago
Related projects: ⓘ
- Container Storage Interface components for SPIFFE☆53Updated last month
- A Kubernetes CSI plugin to automatically mount SPIFFE certificates to Pods using ephemeral volumes☆69Updated this week
- sigstore installation walkthrough, local☆54Updated 4 months ago
- ☆84Updated 3 months ago
- sigstore the hard way!☆110Updated 4 months ago
- Kubernetes controller manager that reconciles workload registration and federation relationships.☆53Updated this week
- The SPIFFE Helper is a tool that can be used to retrieve and manage SVIDs on behalf of a workload☆43Updated this week
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆55Updated this week
- Sigstore Policy Controller - an admission controller that can be used to enforce policy on a Kubernetes cluster based on verifiable supp…☆123Updated last week
- kubectl plugin for signing Kubernetes manifest YAML files with sigstore☆78Updated 2 weeks ago
- The Open Policy Agent project standard library.☆93Updated 11 months ago
- This tool allows using a SPIFFE JWT to authenticate to AWS APIs☆34Updated 3 months ago
- Stuff to make standing up sigstore (esp. for testing) easier for e2e/integration testing.☆57Updated this week
- ☆61Updated 4 months ago
- ☆35Updated 2 years ago
- Tutorials about Cilium and SPIRE integration☆27Updated 2 years ago
- ☆19Updated last month
- Anchore Kubernetes Inventory can poll Kubernetes Cluster API(s) to tell Anchore Enterprise which Containers and Images are currently in-u…☆62Updated this week
- Cross tooling and interoperability specifications☆155Updated last week
- Archivista is a graph and storage service for in-toto attestations. Archivista enables the discovery and retrieval of attestations for so…☆57Updated this week
- 🔮 ✈️ to integrate OPA Gatekeeper's new ExternalData feature with cosign to determine whether the images are valid by verifying their sig…☆75Updated 5 months ago
- Helm charts for sigstore project☆64Updated last week
- Template Go app repo with local test/lint/build/vulnerability check workflow, and on tag image test/build/release pipelines, with ko gene…☆50Updated 4 months ago
- ☆11Updated last year
- 🎟 Voucher creates attestations for Binary Authorization☆73Updated 2 months ago
- Add digests to container and init container images in Kubernetes pod and pod template specs. Use either as a mutating admission webhook, …☆117Updated 3 weeks ago
- A place for policy work group related proposals and prototypes.☆64Updated 2 months ago
- Source for the SPIFFE and SPIRE project websites. Hosted by the Cloud Native Computing Foundation☆25Updated last month
- Istio identity with SPIFFE/SPIRE☆19Updated 3 years ago
- Service implementation for a Kubernetes Dynamic Webhook controller for interacting with Anchore☆63Updated last week