smallstep / step-sds
🔭 Secret discovery service (SDS): simplifying certificate management for relying parties (such as Envoy)
☆73Updated this week
Alternatives and similar repositories for step-sds:
Users that are interested in step-sds are comparing it to the libraries listed below
- vault-auth-spire is an authentication plugin for Hashicorp Vault which allows logging into Vault using a Spire provided SVID.☆42Updated last year
- This tool allows using a SPIFFE JWT to authenticate to AWS APIs☆34Updated 7 months ago
- Provides agent and server plugins for SPIRE to allow TPM 2-based node attestation.☆76Updated last year
- Container Storage Interface components for SPIFFE☆56Updated last week
- A Go library for implementing GitOps, used by Ignite☆66Updated last year
- The SPIFFE Helper is a tool that can be used to retrieve and manage SVIDs on behalf of a workload☆46Updated this week
- Envoy External Authorization API Bridge To SPIFFE Workload API☆46Updated last month
- HashiCorp Nomad Provider for Virtual Kubelet☆30Updated 5 years ago
- ☆89Updated 7 months ago
- netd: GKE Networking Daemonset☆57Updated this week
- Cluster API Provider Packet (now Equinix Metal)☆99Updated 3 weeks ago
- A sentry for zero-hit TLS certificate changes in Go☆44Updated 3 months ago
- ☆66Updated last week
- This repo is only used for development and by ClusterAPI. Flatcar builds ignition from github.com/coreos/ignition.☆33Updated last year
- A Kubernetes CSI plugin to automatically mount SPIFFE certificates to Pods using ephemeral volumes☆77Updated this week
- ☆64Updated 8 months ago
- A Prometheus exporter for Calico policy packet counts☆92Updated 2 years ago
- Virtual k8s cluster for testing.☆83Updated 5 years ago
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆60Updated this week
- Integrates Spiffe and Vault to have secretless authentication☆85Updated 3 weeks ago
- Towards Horizontally Scalable Kubernetes Controllers (Study Project)☆33Updated last year
- Instance Metadata Service☆104Updated this week
- A simple (experimental) tool for generating Kubernetes manifest from templates based on CUE☆24Updated 2 years ago
- command line interface for Envoy xDS endpoint☆35Updated 4 years ago
- verify https assets with a public transparency log☆75Updated 3 years ago
- Manage AppAmormor profiles for Kubernetes cluster☆40Updated last year
- CueBlox CLI☆46Updated last year
- COSI Runtime☆44Updated this week
- Go library for installing and managing Kubernetes clusters☆35Updated 4 months ago