kubearmor / kvm-service
Kubearmor Virtual Machine Service allows orchestrating policies to VMs and Bare-Metal environments using either k8s or non-k8s control plane.
☆10Updated last year
Alternatives and similar repositories for kvm-service:
Users that are interested in kvm-service are comparing it to the libraries listed below
- KubeArmor cli tool aka kArmor☆40Updated this week
- Intent driven security automation framework☆25Updated this week
- Ebpf faqs, samples, tooling☆44Updated 3 years ago
- AccuKnox IaC Scan GitHub Action☆14Updated 3 months ago
- k8tls (pronounced cattles), to assess server port security by detecting its TLS and certificates configuration.☆19Updated last month
- AccuKnox CI/CD Action for Container Security Scan☆14Updated 3 months ago
- Shape your traffic the BPF way☆79Updated last year
- A crawler for kernel releases distributed by the major Linux distributions.☆13Updated 3 months ago
- Kubevuln is an in-cluster component of the Kubescape security platform. It scans container images for vulnerabilities, using Grype as its…☆19Updated this week
- Community curated list of System and Network policy templates for the KubeArmor and Cilium☆41Updated 2 months ago
- Discover least permissive security posture, Network Microsegmentation, and Application behaviour based on visibility/observability data e…☆32Updated last year
- Open Source runtime tool which help to detect malware code execution and run time mis-configuration change on a kubernetes cluster☆36Updated 2 years ago
- Kyverno policies based authorization plugin for Envoy☆18Updated this week
- All-purpose test suite for Falco and its ecosystem☆14Updated this week
- KubeArmor runtime security integration with Open Horizon☆12Updated last year
- Fetches the metadata from kubernetes API server and dispatches them to Falco instances☆15Updated 7 months ago
- Library to work with linux namespaces in go☆35Updated last year
- This is a POC repository showing how a Kubernetes Admission Controller can be made irrelevant when verifying container image signatures☆12Updated 2 years ago
- Find your favorite eBee☆57Updated this week
- Generate a variety of suspect actions that are detected by Falco rulesets☆98Updated this week
- agent for handling seccomp descriptors for container runtimes☆43Updated 11 months ago
- ☆24Updated 8 months ago
- ☆32Updated 4 months ago
- A CLI used to work with the Wolfi OSS project☆58Updated this week
- The kernel tracer that attaches eBPF probes to containers for capturing TLS traffic☆22Updated last week
- This projects contains pre-made policies for Kubernetes Validating Admission Policies. This policy library is based on Kubescape controls…☆50Updated last month
- Utilities for interacting with Dockerfiles☆15Updated 3 years ago
- Discover Linux kernel namespaces in Go. Almost everywhere. Aware of various OCI container engines, even engines in containers.☆41Updated 2 months ago
- BPF with GO and Docker☆23Updated 2 years ago