NSA Kubernetes Hardening Guidance [pdf]

This page summarizes the projects mentioned and recommended in the original post on news.ycombinator.com

Our great sponsors
  • WorkOS - The modern identity platform for B2B SaaS
  • InfluxDB - Power Real-Time Data Analytics at Scale
  • SaaSHub - Software Alternatives and Reviews
  • cluster-api

    Home for Cluster API, a subproject of sig-cluster-lifecycle

  • kcp

    Kubernetes-like control planes for form-factors and use-cases beyond Kubernetes and container workloads. (by kcp-dev)

  • And making it so that "many clusters" look exactly like "one cluster" is one of the goals the kcp prototype was exploring (although still early) because I hear this ALL the time:

    1. 1 cluster was awesome

    2. Many clusters means I rebuild the world

    3. I wish there was a way to get the benefits of one cluster across multiples.

    Which I believe is a solvable problem and partially what we've been poking at at https://github.com/kcp-dev/kcp (although it's still so early that I don't want to get hopes up).

  • WorkOS

    The modern identity platform for B2B SaaS. The APIs are flexible and easy-to-use, supporting authentication, user identity, and complex enterprise features like SSO and SCIM provisioning.

    WorkOS logo
  • karmada

    Open, Multi-Cloud, Multi-Cluster Kubernetes Orchestration

  • polaris

    Validation of best practices in your Kubernetes clusters (by FairwindsOps)

  • so... a lot of this can be done with Fairwind's OSS tool Polaris... https://github.com/FairwindsOps/polaris

    feels good that we've been addressing this for a bit already tbh.

  • awesome-k8s-security

    A curated list for Awesome Kubernetes Security resources

  • Just search for ‘* awesome list’

    https://github.com/magnologan/awesome-k8s-security

    (Unaffiliated with above, just popped up for k8s hardening awesome list)

  • InfluxDB

    Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.

    InfluxDB logo
NOTE: The number of mentions on this list indicates mentions on common posts plus user suggested alternatives. Hence, a higher number means a more popular project.

Suggest a related project

Related posts