kube-bench-exporter
runtime
kube-bench-exporter | runtime | |
---|---|---|
5 | 4 | |
11 | 2,095 | |
- | - | |
1.8 | 8.3 | |
about 3 years ago | almost 3 years ago | |
Go | Go | |
MIT License | Apache License 2.0 |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
kube-bench-exporter
- Wrote a tool for exporting your kube-bench reports to multiple targets, like S3 buckets, in one-go with asynchronous fan-out.
- Wrote a tool for exporting your kube-bench reports to multiple targets, like S3 buckets, in one-go
- Wrote a tool for exporting your kube-bench reports to multiple targets in one-go
runtime
-
AER: Error of this Agent is Reported First
Let me give you an example. [Here's one of the best questions I've ever asked on the internet.]https://github.com/kata-containers/runtime/issues/2795) I've seen many better questions asked, but this is the best I've been able to manage. I provided a decent description of the problem, a test-case that allowed other people to reproduce it as well (not relevant in your case), what I tried that didn't work, and the exact log messages and system information that indicated the problem. I then followed up with the people who were helping me and the problem was resolved.
-
Set *minimum* CPU allocation for a service
in parts of prod we use a combination of cgroups (mentioned in the thread already), taskset https://man7.org/linux/man-pages/man1/taskset.1.html, and in other cases (HPC workloads on large clusters) Kata Containers to isolate and optimize application resources: https://katacontainers.io/
-
Docker for Mac M1 RC
It might use a hypervisor though, as the pendulum swings back
https://katacontainers.io/
-
Building a secure/sandboxed environment for executing untrusted code
Kata Containers
What are some alternatives?
trivy - Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more
wsl-vpnkit - Provides network connectivity to WSL 2 when blocked by VPN
kube-beacon - Open Source runtime scanner for k8s cluster and perform security audit checks based on CIS Kubernetes Benchmark specification
amicontained - Container introspection tool. Find out what container runtime is being used as well as features available.
bt2qbt - bt2qbt is cli tool for export from uTorrent\Bittorrent into qBittorrent
for-mac - Bug reports for Docker Desktop for Mac
Certified-Kubernetes-Security-Specialist - Curated resources help you prepare for the CNCF/Linux Foundation CKS 2021 "Kubernetes Certified Security Specialist" Certification exam. Please provide feedback or requests by raising issues, or making a pull request. All feedback for improvements are welcome. thank you.
singularity - Singularity has been renamed to Apptainer as part of us moving the project to the Linux Foundation. This repo has been persisted as a snapshot right before the changes.
kubernetes-goat - Kubernetes Goat is a "Vulnerable by Design" cluster environment to learn and practice Kubernetes security using an interactive hands-on playground 🚀
microshift - A small form factor OpenShift/Kubernetes optimized for edge computing
kubescape - Kubescape is an open-source Kubernetes security platform for your IDE, CI/CD pipelines, and clusters. It includes risk analysis, security, compliance, and misconfiguration scanning, saving Kubernetes users and administrators precious time, effort, and resources.
CDK - 📦 Make security testing of K8s, Docker, and Containerd easier.