Gatekeeper Library Logo

Gatekeeper Library

0
Free
Visit Website

Gatekeeper introduces the following functionality: An extensible, parameterized policy library Native Kubernetes CRDs for instantiating the policy library (aka "constraints") Native Kubernetes CRDs for extending the policy library (aka "constraint templates") Native Kubernetes CRDs for mutation support Audit functionality External data support Get started with the installation instructions to deploy Gatekeeper components to your Kubernetes cluster. Documentation is available on the Gatekeeper website. Policy Library: See the Gatekeeper policy library for a collection of constraint templates and sample constraints that you can use with Gatekeeper. Community & Contributing: Refer to Gatekeeper's contribution guide to find out how you can help. Code of conduct: This project is governed by the CNCF Code of conduct. Security: For details on how to report vulnerabilities and security release process, please refer to Gatekeeper Security for more information.

FEATURES

ALTERNATIVES

A workload policy enforcement tool for Kubernetes with various supported policies and configuration options.

minikube implements a local Kubernetes cluster for easy application development and supports various Kubernetes features.

A cloud and database asset intelligence platform that provides continuous monitoring, compliance management, and security posture assessment across hybrid cloud environments.

Commercial

Monitors AWS and GCP accounts for policy changes and alerts on insecure configurations, with support for OpenStack and GitHub monitoring.

Cloud Container Attack Tool (CCAT) is a tool for testing security of container environments.

Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.

Commercial

Anchore Enterprise is a platform that protects and secures software supply chains end-to-end.

Commercial

gVisor is an application kernel that provides isolation for running sandboxed containers.