The Open Policy Agent (OPA, pronounced “oh-pa”) is an open source, general-purpose policy engine that unifies policy enforcement across the stack. OPA provides a high-level declarative language that lets you specify policy as code and simple APIs to offload policy decision-making from your software. You can use OPA to enforce policies in microservices, Kubernetes, CI/CD pipelines, API gateways, and more.
What is OPA
OPA 是一种开源的通用策略引擎,主要为了解决云原生应用的访问控制、授权和策略
Meshery, the cloud native manager
翻译 - Meshery,服务网格管理平面
Policy and data administration, distribution, and real-time updates on top of Policy Agents (OPA, Cedar, ...)
🐊 Gatekeeper - Policy Controller for Kubernetes
翻译 - Gatekeeper-Kubernetes的策略控制器
Write tests against structured configuration data using the Open Policy Agent Rego query language
翻译 - 使用Open Policy Agent Rego查询语言针对结构化配置数据编写测试
Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.
Curated resources help you prepare for the CNCF/Linux Foundation CKS 2021 "Kubernetes Certified Security Specialist" Certification exam. Please provide feedback or requests by raising issues, or maki...
翻译 - 在线资源可帮助您准备参加CNCF / Linux Foundation CKS 2020“ Kubernetes认证的安全专家”认证考试。随着时间的推移,这不太可能是最新的完整列表-如果在此处添加一些内容,请提出拉取请求。
Automation to assess the state of your M365 tenant against CISA's baselines
Cloud-native authorization for modern applications and APIs
#Awesome#A curated list of OPA related tools, frameworks and articles
An open-source tool for auditing your software supply chain stack for security compliance based on a new CIS Software Supply Chain benchmark.
📚 The OPA Gatekeeper policy library
Tool and policy library for reviewing Google Kubernetes Engine clusters against best practices
A policy management tool for interacting with Gatekeeper
A plugin to enforce OPA policies with Envoy
Integrations, examples, and proof-of-concepts that are not part of OPA proper.
S3 Reverse Proxy with GET, PUT and DELETE methods and authentication (OpenID Connect and Basic Auth)
A simple to use web-based OPA Gatekeeper policy manager
Open source compliance tool for development platforms.
Regal is a linter and language server for Rego, bringing your policy development experience to the next level!