nsmith5 / road-to-secure-kubernetes
Hardening a sketchy containerized application one step at a time
☆54Updated 3 years ago
Alternatives and similar repositories for road-to-secure-kubernetes
Users that are interested in road-to-secure-kubernetes are comparing it to the libraries listed below
Sorting:
- A library for representing OCI image layers in an abstract filesystem☆27Updated 4 years ago
- Generate K8s RBAC policies based on e2e test runs☆28Updated 3 years ago
- Kubernetes security scanner based on the open-source container vulnerability scanner Trivy.☆23Updated 4 years ago
- Kubernetes admission webhook that uses cosign verify to check the subject and issuer of the image matches what you expect☆23Updated last month
- Sandstorm Kubernetes Client - Convenience tools to interact with Kubernetes☆28Updated 9 months ago
- Automated Terraform cloud and enterprise drift detection☆37Updated last year
- A Kubewarden Policy that detects usage of deprecated and dropped Kubernetes resources☆16Updated this week
- A trivial wrapper around spf13/cobra to simplify some basic patterns☆22Updated last year
- etcd-k8s-extract takes in an etcd data directory or db file used in kubernetes, extracts the kubernetes resources and then writes the res…☆37Updated 4 months ago
- Sigstore user stories☆30Updated last year
- Collection of kbrew recipes☆10Updated 3 years ago
- Kubernetes tools in a "distroless" container☆13Updated last year
- This repository contains examples of Kyverno policies for controlling the creation of Cilium Network policies☆20Updated last year
- Tool to automate build instructions generation☆32Updated last week
- "A practical guide to CUE: patterns for everyday use" - the demo!☆16Updated 3 years ago
- Proof of concept that uses cosign and GitHub's in built OIDC for actions to sign container images, providing a proof that what is in the …☆14Updated 2 years ago
- ☆22Updated last year
- Open Source declarative disk configuration system for Kubernetes☆39Updated 2 years ago
- Kubernetes config generator☆20Updated 4 years ago
- A Kubernetes operator for managing goharbor instances☆22Updated 2 months ago
- A simple CLI for combining json and yaml files☆19Updated last year
- Secure Distributed Thanos Deployment using an Observability Cluster☆39Updated last week
- OpenCP shim is a simple HTTP server that implements the Kubernetes API server interface. It is a shim that allows you to use the Kubernet…☆14Updated 2 years ago
- Package cueconfig provides an API designed to make it straightforward to use the CUE language as a configuration format for Go programs.☆19Updated 2 months ago
- Use OpenFaaS functions as Kubernetes Validating Admission Webhook☆23Updated last year
- Notes from KubeCon and EnvoyCon 2019☆28Updated 5 years ago
- Experimental wrapper for kubectl☆22Updated last year
- ☆14Updated 2 years ago
- kubernetes operator manager☆13Updated last month
- A simple tool for converting Rego (OPA) rule into command.☆28Updated 2 years ago