(2)
Certificate signing request agent for integrating cert-manager with Istio
8h
100K+
Envoy Rate Limit Service (ratelimit) is a Go/gRPC service that provides centralized rate limiting for Envoy and other proxies.
8h
100K+
Sealed Secrets is a Kubernetes controller and tool for one-way encrypted Secrets.
2h
100K+
The Kyverno Policy Reporter watches for PolicyReport Resources. It creates Prometheus Metrics and can send rule validation events to different targets like Loki, Elasticsearch, Slack or Discord
8h
100K+
AWS Private CA is an AWS service that can setup and manage private CAs, as well as issue private certificates.
8h
100K+
OpenBao provides a solution to manage, store, and distribute sensitive data, including secrets, certificates, and keys
2h
100K+
This project signs and proxies HTTP requests with Sigv4
8h
50K+
The official image for monitoring systems, containers and applications with Netdata.
12h
500M+
570
Calico CSI driver for secure connections from Kubernetes pods to local daemons.
8h
50K+
An open source, Google Zanzibar-inspired database for fine-grained authorization.
8h
50K+
2
Kubernetes controller that synchronizes Azure Key Vault secrets, certificates, and keys into native Kubernetes Secrets via the AzureKeyVaultSecret CRD.
2h
50K+
Certificate Authority for the Hyperledger Fabric blockchain network
8h
50K+
2
A Kubernetes admission controller to integrate container image signature verification and trust pinning into a cluster.
8h
50K+
Packages Gatekeeper Custom Resource Definitions and kubectl for deploying OPA-based policy enforcement on Kubernetes.
8h
50K+
Kyverno Reports server provides a scalable solution for storing policy reports and cluster policy reports.
8h
50K+
Calico aggregated API server that exposes projectcalico.org APIs through the Kubernetes API aggregation layer.
2h
50K+
DEPRECATED; Notary server and signer cooperatively handle signing and distribution
2y
5M+
72
A container management platform built for organizations that deploy containers in production.
2d
100M+
442
Cloud-native, platform-agnostic, scalable API Gateway with plugin ecosystem for authentication, rate limiting, and observability. Supports REST, GraphQL, gRPC, and WebSocket protocols with DB-less and declarative configuration modes.
8h
50K+
6
Calico Whisker provides a web UI to view network flows in Kubernetes clusters.
8h
50K+
Calico fan-out proxy that scales access to the Calico datastore for large clusters.
2h
50K+
Calico command-line tool (calicoctl) for managing Calico network and security configuration in Kubernetes.
8h
50K+
A trust manager package image that provides Debian CA certificates for use as an init container with cert-manager trust-manager.
2h
50K+
Cloud native Identity & Access Proxy (IAP) and Access Control Decision API that authenticates, authorizes, and mutates incoming HTTP(s) requests.
8h
50K+
Mounts secrets, keys, and certificates from external stores (AWS Secrets Manager, Azure Key Vault, GCP Secret Manager, HashiCorp Vault) into Kubernetes pods as files via the CSI volume API.
8h
50K+
Tool that retrieves and manages SVIDs on behalf of a workload via the SPIFFE Workload API.
8h
50K+