square / spiffe-aws-assume-role
This tool allows using a SPIFFE JWT to authenticate to AWS APIs
☆34Updated 10 months ago
Alternatives and similar repositories for spiffe-aws-assume-role:
Users that are interested in spiffe-aws-assume-role are comparing it to the libraries listed below
- Trust Dexter to ensure that all your images are pinned by digest for better security☆29Updated last year
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆62Updated this week
- 🔍 Rekor transparency log monitoring and alerting☆27Updated last year
- A Kubernetes Controller that will ensure that the EC2 Source Destination Check (source-dest-check attribute) is disabled on nodes within …☆18Updated 4 years ago
- Integrates Spiffe and Vault to have secretless authentication☆88Updated last week
- A simple tool for converting Rego (OPA) rule into command.☆28Updated 2 years ago
- ☆32Updated 5 years ago
- A library for representing OCI image layers in an abstract filesystem☆27Updated 4 years ago
- Lambda function for verifying signed images in ECS☆33Updated last year
- Tag and remove AWS Resources with Automation☆39Updated 6 years ago
- 🎟 Voucher creates attestations for Binary Authorization☆73Updated last month
- Kitten is a local runner for Tekton pipeline, relying on a local docker engine☆34Updated 5 years ago
- Lint your Rego policies inside of Visual Studio Code☆16Updated 9 months ago
- SPIFFE Federation the easy way☆20Updated this week
- This project creates a mutation admission controller that injects AWS SIGv4 proxy as a sidecar.☆27Updated last year
- Envoy External Authorization API Bridge To SPIFFE Workload API☆46Updated 4 months ago
- ☆27Updated 2 years ago
- A set of utilities and classes for working with Open Policy Agent based tools, including Gatekeeper and Conftest☆39Updated 5 months ago
- ☆18Updated this week
- Kubernetes Controller for managing Github☆38Updated last year
- Easy AWS stack for Crossplane☆13Updated 4 years ago
- A lightweight API for maintaining a list of Kubernetes clusters and associated metadata.☆27Updated this week
- Create a dedicated IaaS instance per Pod to mitigate container breakout (including CPU vulnerabilities depending on the instance type)☆22Updated 5 years ago
- Kubernetes admission webhook that uses cosign verify to check the subject and issuer of the image matches what you expect☆23Updated this week
- @crossplane provider for @kubernetes-sigs Cluster API☆18Updated 4 years ago
- Manage existing infrastructure with Cluster API using this provider.☆45Updated 2 years ago
- ☆20Updated 8 months ago
- ☆29Updated 8 months ago
- Operator to handle dynamic configuration of https://github.com/banzaicloud/bank-vaults☆18Updated last year
- Example consumer of the GitOps Toolkit Source APIs☆40Updated 2 weeks ago