OPA 是一种开源的通用策略引擎,主要为了解决云原生应用的访问控制、授权和策略
Prevent Kubernetes misconfigurations from reaching production (again 😤 )! From code to cloud, Datree provides an E2E policy enforcement solution to run automatic checks for rule violations. See our d...
翻译 - 防止 Kubernetes 错误配置进入生产环境(再次 😤 )! Datree 是一个 CLI 工具,可确保 K8s 清单和 Helm 图表遵循最佳实践以及您组织的政策。查看我们的文档:https://hub.datree.io
Policy and data administration, distribution, and real-time updates on top of Policy Agents (OPA, Cedar, ...)
The corrective bash syntax highlighter
翻译 - 纠正性bash语法荧光笔
🐊 Gatekeeper - Policy Controller for Kubernetes
翻译 - Gatekeeper-Kubernetes的策略控制器
Cerbos is the open core, language-agnostic, scalable authorization solution that makes user permissions and authorization simple to implement and manage by writing context-aware access control policie...
GitHub's employee intellectual property agreement, open sourced and reusable
Curated resources help you prepare for the CNCF/Linux Foundation CKS 2021 "Kubernetes Certified Security Specialist" Certification exam. Please provide feedback or requests by raising issues, or maki...
翻译 - 在线资源可帮助您准备参加CNCF / Linux Foundation CKS 2020“ Kubernetes认证的安全专家”认证考试。随着时间的推移,这不太可能是最新的完整列表-如果在此处添加一些内容,请提出拉取请求。
KCL Programming Language (CNCF Sandbox Project). https://kcl-lang.io
Collaborative development on GitHub's site policies, procedures, and guidelines
A proposed standard that allows websites to define security policies.
翻译 - 提议的标准,允许网站定义安全策略。
Runtime Security Enforcement System. Workload hardening/sandboxing and implementing least-permissive policies made easy leveraging LSMs (BPF-LSM, AppArmor).
Repository for Azure Resource Policy built-in definitions and samples
翻译 - Azure资源策略示例的存储库
Meaningful control of data in distributed systems.
翻译 - 对分布式系统中数据的有意义的控制。
Mirror of FreeIPA, an integrated security information management solution
building a chinese dialogue system based on the newest version of rasa(基于最新版本rasa搭建的对话系统)
Project Calico's per-host agent Felix, responsible for programming routes and security policy.
A GitHub App that enforces approval policies on pull requests