(2)
Keycloak is a high performance Java-based identity and access management solution. It lets developers add an authentication layer to their applications with minimum effort.
3h
50K+
The AWS EKS Pod Identity Agent runs on Amazon EKS nodes and exchanges Kubernetes service account tokens for temporary AWS IAM credentials, providing pods with IAM roles without using IRSA or instance profiles.
7h
50K+
The Kyverno Policy Reporter watches for PolicyReport Resources. It creates Prometheus Metrics and can send rule validation events to different targets like Loki, Elasticsearch, Slack or Discord
7h
50K+
AWS Private CA is an AWS service that can setup and manage private CAs, as well as issue private certificates.
7h
50K+
OpenBao provides a solution to manage, store, and distribute sensitive data, including secrets, certificates, and keys
3h
50K+
Sealed Secrets is a Kubernetes controller and tool for one-way encrypted Secrets.
7h
50K+
This project signs and proxies HTTP requests with Sigv4
7h
50K+
node-collector gathers file system and process information from Kubernetes cluster nodes for CIS benchmark compliance checking.
3h
50K+
EFF's ACME client for obtaining and renewing TLS certificates from Let's Encrypt and any ACME-compatible CA.
3h
50K+
2
Kubernetes-native security toolkit that leverages Trivy to continuously scan your Kubernetes cluster for security issues.
9h
50K+
Certificate Authority for the Hyperledger Fabric blockchain network
3h
50K+
2
Kubernetes controller that synchronizes Azure Key Vault secrets, certificates, and keys into native Kubernetes Secrets via the AzureKeyVaultSecret CRD.
3h
50K+
A Kubernetes admission controller to integrate container image signature verification and trust pinning into a cluster.
3h
50K+
Kyverno Reports server provides a scalable solution for storing policy reports and cluster policy reports.
9h
50K+
Packages Gatekeeper Custom Resource Definitions and kubectl for deploying OPA-based policy enforcement on Kubernetes.
10h
10K+
Kyverno reports server provides a scalable solution for storing policy reports and cluster policy reports.
3h
10K+
A trust manager package image that provides Debian CA certificates for use as an init container with cert-manager trust-manager.
3h
10K+
Calico command-line tool (calicoctl) for managing Calico network and security configuration in Kubernetes.
7h
10K+
Apache APISIX is a dynamic, real-time, high-performance API Gateway.
8h
10K+
Tool that retrieves and manages SVIDs on behalf of a workload via the SPIFFE Workload API.
7h
10K+
Cloud-native, platform-agnostic, scalable API Gateway with plugin ecosystem for authentication, rate limiting, and observability. Supports REST, GraphQL, gRPC, and WebSocket protocols with DB-less and declarative configuration modes.
7h
10K+
6
Kubeseal is the client side tool for Sealed Secrets to encrypt secrets.
3h
10K+
Cloud native Identity & Access Proxy (IAP) and Access Control Decision API that authenticates, authorizes, and mutates incoming HTTP(s) requests.
7h
10K+
Calico aggregated API server that exposes projectcalico.org APIs through the Kubernetes API aggregation layer.
3h
10K+
Cilium Standalone DNS Proxy is an alpha component that provides independent DNS proxying capabilities, receiving policy rules from the Cilium agent via gRPC.
7h
10K+
Pinniped CLI is a command-line utility for interacting with Pinniped
7h
10K+
Calico fan-out proxy that scales access to the Calico datastore for large clusters.
10h
10K+
Kubernetes CSI driver that injects the SPIFFE Workload API socket into workload pods as an ephemeral inline volume.
7h
10K+
Calico Whisker provides a web UI to view network flows in Kubernetes clusters.
3h
10K+