ladon
cedar
ladon | cedar | |
---|---|---|
1 | 7 | |
2,408 | 966 | |
0.2% | 2.0% | |
6.3 | 9.7 | |
3 months ago | 1 day ago | |
Go | Rust | |
Apache License 2.0 | Apache License 2.0 |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
ladon
-
Open Policy Agent
4. OPA evaluates the policies written in Rego against the input and returns a decision (allow or deny) back to your service.
What's good solid alternatives in Kubernets? Saw CASBIN, paid services, but nothing close to OPA/Rego. Please correct me if I'm wrong.
I found it's hard to convince everyone around to use OPA/Rego and wrap into a managed service. The main objection - wrapping another DSL (domain-specific language) is hard.
However it was relatively simple to convince my team to use featured complete Go library Ladon https://github.com/ory/ladon
Ladon is inspired by AWS IAM Policies.
{
cedar
-
PEP and PDP for Secure Authorization with AVP
Amazon Verified Permissions (AVP) uses Cedar, a purpose-built, policy-as-code language designed for fine-grained authorization. Cedar enables us to define and enforce access control policies that dictate who can perform what actions on which resources.
-
Unlocking Fine-Grained Authorization with Amazon Verified Permissions: An Underrated AWS Service
Amazon Verified Permissions is a fully managed, scalable authorization service designed for custom applications. It uses the Cedar policy language to define and enforce fine-grained permissions, allowing developers to externalize authorization logic and centralize policy management.
-
Awsviz.dev simplifying AWS IAM policies
Cedar, the new language by AWS that's currently used by Verified Access, is looking good; https://www.cedarpolicy.com
- Cedar: Rust Implementation of AWS Cedar Policy Language
-
Ubicloud Enabled ARM64 VMs
Amazon has open sourced their policy engine https://github.com/cedar-policy/cedar
-
Open Policy Agent
Curious what folks think about this versus cedar (https://www.cedarpolicy.com/), the open source policy engine behind aws verified permissions.
- Cedar is a language for writing and enforcing auth policies in your applications
What are some alternatives?
topaz - Cloud-native authorization for modern applications and APIs
OPA (Open Policy Agent) - Open Policy Agent (OPA) is an open source, general-purpose policy engine.
openfga - A high performance and flexible authorization/permission engine built for developers and inspired by Google Zanzibar
flipt - Enterprise-ready, GitOps enabled, CloudNative feature management solution
aws-iam-managed-policies - Automatically populated repository of AWS IAM Managed Policies