(1)
Polaris is an open source policy engine for Kubernetes that validates and remediates resource configuration. It includes 30+ built in configuration policies, as well as the ability to build custom policies with JSON Schema. When run on the command line or as a mutating webhook, Polaris can automatically remediate issues based on policy criteria.
4h
100K+
cert-manager trust-manager manages trust bundles in Kubernetes and OpenShift clusters
4h
100K+
Apache APISIX is a dynamic, real-time, high-performance API Gateway.
4h
100K+
A Kubernetes utility to identify optimal resource requests and limits using Vertical Pod Autoscalers.
10h
100K+
Please refer to the docker/ucp image for more information
6y
500M+
4
The Kyverno Policy Reporter UI watches for PolicyReport Resources and displays information on a web based UI
4h
100K+
EFF's ACME client for obtaining and renewing TLS certificates from Let's Encrypt and any ACME-compatible CA.
10h
100K+
2
node-collector gathers file system and process information from Kubernetes cluster nodes for CIS benchmark compliance checking.
10h
100K+
Envoy Rate Limit Service (ratelimit) is a Go/gRPC service that provides centralized rate limiting for Envoy and other proxies.
10h
100K+
Certificate signing request agent for integrating cert-manager with Istio
10h
100K+
Sealed Secrets is a Kubernetes controller and tool for one-way encrypted Secrets.
4h
100K+
OpenID Connect (OIDC) identity and OAuth 2.0 provider with pluggable connectors
10h
100K+
Monitoring and observability tool for Kubernetes policy reports
10h
100K+
Keycloak is a high performance Java-based identity and access management solution. It lets developers add an authentication layer to their applications with minimum effort.
10h
100K+
The Kyverno Policy Reporter watches for PolicyReport Resources. It creates Prometheus Metrics and can send rule validation events to different targets like Loki, Elasticsearch, Slack or Discord
10h
100K+
AWS Private CA is an AWS service that can setup and manage private CAs, as well as issue private certificates.
10h
100K+
OpenBao provides a solution to manage, store, and distribute sensitive data, including secrets, certificates, and keys
10h
50K+
This project signs and proxies HTTP requests with Sigv4
4h
50K+
The official image for monitoring systems, containers and applications with Netdata.
21h
500M+
570
Calico CSI driver for secure connections from Kubernetes pods to local daemons.
10h
50K+
An open source, Google Zanzibar-inspired database for fine-grained authorization.
4h
50K+
2
Kubernetes controller that synchronizes Azure Key Vault secrets, certificates, and keys into native Kubernetes Secrets via the AzureKeyVaultSecret CRD.
10h
50K+
Certificate Authority for the Hyperledger Fabric blockchain network
4h
50K+
2
A Kubernetes admission controller to integrate container image signature verification and trust pinning into a cluster.
10h
50K+
Kyverno Reports server provides a scalable solution for storing policy reports and cluster policy reports.
4h
50K+
Packages Gatekeeper Custom Resource Definitions and kubectl for deploying OPA-based policy enforcement on Kubernetes.
10h
50K+
DEPRECATED; Notary server and signer cooperatively handle signing and distribution
2y
5M+
72