• Stars
    star
    808
  • Rank 54,531 (Top 2 %)
  • Language
    Rust
  • License
    Apache License 2.0
  • Created over 6 years ago
  • Updated 11 months ago

Reviews

There are no reviews yet. Be the first to send feedback to the community and the maintainers!

Repository Details

Container Registry and Image Management for Kubernetes Clusters

Trow

Image Management for Kubernetes

We're building an image management solution for Kubernetes (and possibly other orchestrators). At its heart is the Trow Registry, which runs inside the cluster, is simple to set-up and fully integrated with Kubernetes, including support for auditing and RBAC.

Why "Trow"

"Trow" is a word with multiple, divergent meanings. In Shetland folklore a trow is a small, mischievous creature, similar to the Scandanavian troll. In England, it is a old style of cargo boat that transported goods on rivers. Finally, it is an archaic word meaning "to think, believe, or trust". The reader is free to choose which interpretation they like most, but it should be pronounced to rhyme with "brow".

Use Cases

The primary goal for Trow is to create a registry that runs within Kubernetes and provides a secure and fast way to get containers running on the cluster.

A major focus is providing controls for cluster administrators to define which images can run in the cluster. Trow can prevent unauthorised and potentially insecure or malicious images from touching your cluster.

Features include:

  • conforms to the OCI Distribution Specification for registries
  • controls images running inside the cluster via approve/deny lists
  • full auditing and authentication of image access (in progress)
  • distributed architecture for HA and scalability (planned)

Comparison to Other Registries

There is a short article on how Trow compares to other registries, including Harbor.

Install

If you want to quickly try out Trow on a development cluster (either local or remote), follow the quick install instructions.

This screencast shows how quick it is to get started:

asciicast

Normal installations and all production installations should follow the Kustomize or Helm installation instructions. Note that this requires a sub-domain that can pointed at the registry.

Note that Trow is currently alpha and you can expect to find rough edges.

Architecture and Design

If you're interested in the design of Trow please take a look at the Architecture Guide.

Tests

There is a reasonably large test suite, which can be run with the docker/test.sh script.

User Guide

Work has started on a User Guide. Currently this explains how to persist images and how to list repositories and tags via curl.

Contributing

Please take a look at CONTRIBUTING.md for details on how to help out and DEVELOPING.md for how to get started compiling and running Trow. See also the Architecture Guide.

Code of Conduct

All participants in the Trow project are expected to comply with the code of conduct.

Notes

  • The project currently runs on Rust Nightly.

More Repositories

1

k8s-deployment-strategies

Kubernetes deployment strategies explained
Go
3,411
star
2

kubernetes-examples

Minimal self-contained examples of standard Kubernetes features and patterns in YAML
Shell
1,361
star
3

minimesos

The experimentation and testing tool for Apache Mesos - NO LONGER MAINTANED!
Java
431
star
4

helm-monitor

Monitor K8S Helm release, rollback on metrics behavior (Prometheus, Elasticsearch, Sentry)
Go
405
star
5

helm-convert

Convert Helm charts into Kustomize compatible package
Go
216
star
6

externalsecret-operator

An operator to fetch secrets from cloud services and inject them in Kubernetes
Go
189
star
7

terraform-examples

Simple and idiomatic examples of various Terraform functions and features.
HCL
160
star
8

runbooks

A collection of step by step guides for fixing common tech problems.
HTML
129
star
9

ImageWolf

Fast Distribution of Docker Images on Clusters
Go
128
star
10

locust_exporter

A Locust metrics exporter for Prometheus
Go
100
star
11

terraform-mesos

Stuff for programming a Mesos cluster on the Google Cloud
Shell
98
star
12

prometheus-swarm-discovery

This is a POC for Prometheus service discovery on Docker Swarm
Go
76
star
13

registry-tooling

Install a secure Docker registry on any Kubernetes cluster with a single command
Shell
70
star
14

cd_demo

Demo for a full (almost) CD pipeline with git, jenkins, docker, mesos
Shell
65
star
15

prom-metrics-check

Python
59
star
16

cd-with-docker-tutorial

Continuous Integration and Delivery with Docker
Go
50
star
17

docker-cobbler

Cobbler in a Docker container
Makefile
49
star
18

tinkerbell-rpi4-workflow

Instructions and configuration files to create tinkerbell workflow for raspberry pi 4
Shell
49
star
19

mesos-starter

Java
46
star
20

docker-registry-proxy

Docker Registry 2.0 proxy with SSL and authentication
Shell
31
star
21

stackdriver-gke-custom-metrics

Example python code sending custom container metrics to Stackdriver Monitoring
Python
23
star
22

dcos-in-triton

Infrastructure setup for running DCOS in Joyent's Triton
Python
21
star
23

terraform-provider-cobbler

Terraform provider for Cobbler
Go
18
star
24

capabilities-blog

Code supporting capabilities blog
C
18
star
25

terraform-nomad

Terraform scripts for creating a Nomad cluster on Google Cloud.
HCL
16
star
26

zookeeper

Zookeeper with dynamic host reconfiguration
Shell
16
star
27

cloud-native-patterns

Cloud Native Patterns
HTML
14
star
28

learning-mesos-with-minimesos-workshop

13
star
29

mesos-hello-world

Very simple hello world mesos framework to demonstrate mini-mesos
Java
12
star
30

construct

Mesos framework for deploying a single task on all agents of the cluster
Python
11
star
31

mesosframework

Create a mesos framework with just an application.properties file!
Java
11
star
32

unifi-fargate

Deploy a Unifi Controller on AWS ECS Fargate using Terraform
HCL
11
star
33

pactbroker_exporter

A Pact Broker metrics exporter for Prometheus
Go
10
star
34

php-k8s

PHP on Kubernetes
PHP
9
star
35

delayed-jobs-operator

Go
9
star
36

terraform-provider-template

Skeleton for building a Terraform provider
Go
8
star
37

kubernetes-federation-demo

Demo setup for Kubernetes Cluster Federation
Go
8
star
38

redis-cluster-operator

A Kubernetes Operator for running Production Redis Clusters
Go
7
star
39

mesos-local

Mesos cluster in a container. Used by Mini-Mesos https://github.com/ContainerSolutions/mini-mesos
Groovy
7
star
40

k8shserver

Shell
7
star
41

cobblerclient

Cobbler Client written in Go
Go
7
star
42

kubadm-ansible

Ansible scripts to create & destroy a Kubernetes cluster using kubeadm
7
star
43

gitops-training-lab

Shell
7
star
44

timber

Timber - The Training Companion App
Python
7
star
45

keda-kafka

This repo contains everything to create a demo where you can scale Kafka consumers depending on the queue size on a Kafka Topic from scratch.
Shell
6
star
46

dockerfiles

Dockerfile
6
star
47

kubernetes-demo

Go
6
star
48

minimesos-docker

minimesos Docker images
Shell
6
star
49

k8sbhw

Kubernetes beyond hello world
Go
5
star
50

reveal-md

A CS themed version of Reveal-MD running on Alpine in a Docker Container
CSS
5
star
51

bootstrap-habitat-supervisors-on-k8s

Bootstrap habitat supervisors on top of kubernetes
Ruby
5
star
52

argus-gephi-connector

Argus with Gephi integrated together to get real-time visualisation of infrastructure
Python
5
star
53

habitat-redis-ha-cluster-on-k8s

Run a self organizing HA redis cluster on top of k8s.
Shell
5
star
54

helm-charts

A barebone Helm Chart repository
Smarty
5
star
55

go-validation-admission-controller

Demo implemention of a validation admission controller webhook
Go
5
star
56

dcos-ansible-packet

Ansible playbook for installing DC/OS on Packet cloud
Python
4
star
57

ws-production-grade-kubernetes

Materials for the Production Grade Kubernetes workshop
Go
4
star
58

node-hack

A vulnerable nodejs application for hollywood-style hacking demos
JavaScript
4
star
59

bookinfo

Go
4
star
60

go-example-webserver

Example Go Webserver for training purposes
Groovy
4
star
61

lean-go-containers

Example code for the blog post on building lean go containers using Docker multi-stage builds, which went stable in docker 17.06.
Go
4
star
62

kong-demo

A repo that will demonstrate some of the functionality of the kong ingress
Makefile
4
star
63

ha-redis-kubernetes

Manual Redis HA in Kubernetes with Zero Downtime updates and upgrades
Python
4
star
64

ws-kubernetes-essentials-app

HTML
3
star
65

saferun

run binaries with encrypted environment variables
Go
3
star
66

goto-prometheus

HTML
3
star
67

minimesos.org

minimesos.org
HTML
3
star
68

minimesos-mdns

Service for publishing minimesos containers via mdns
JavaScript
3
star
69

operator-workshop

Go
3
star
70

k8s-federation-demo

demo app to demonstrate Kubernetes cluster federation
JavaScript
3
star
71

nixpkgs-overlay

Overlay for fun and profit
Nix
3
star
72

minimesos-maven-plugin

A Maven plugin for minimesos. Control your minimesos cluster from Maven
Java
3
star
73

loki-grafana-promtail-k8s

3
star
74

codeship-docker-compose-examples

HTML
2
star
75

pres-prereq-to-docker

JavaScript
2
star
76

API-Excercise

The Container Solutions API Exercise Version 2.0
Python
2
star
77

jMeter-docker

dockerised jMeter
Shell
2
star
78

distributed-secrets

Go
2
star
79

kubernetes-cheatsheet

Cheatsheet with useful Kubernetes commands or tools
2
star
80

marathon-haproxy-subdomain-bridge

Go
2
star
81

maturity-matrix

Maturity Matrix
JavaScript
2
star
82

ws-container-taster

File related to the Docker taster workshop
C#
2
star
83

kubernetes-deployment-tools

Docker image with a series of tools intended at Kubernetes deployments
Dockerfile
2
star
84

warsaw-workshop

repository to share with workshop participants
2
star
85

template-spring-boot

Template for a Spring boot project
Java
2
star
86

space-oddity

Drone project
JavaScript
2
star
87

avazacli

Generated avaza API client
Python
2
star
88

external-secrets-charm

Python
2
star
89

ws-k8s-foundation-sample-app

HTML
2
star
90

toolset

CSS
1
star
91

google-cloud-cli

Container image with tools for interacting with the Google Cloud and Kubernetes
Makefile
1
star
92

kuberviz

Semantically visualize your Kubernetes cluster
JavaScript
1
star
93

geoserver

HTML
1
star
94

python-application-operator

Python
1
star
95

sandbox-weave-net-k8s

Shell
1
star
96

sandbox-weave-net-minimesos

Experiment to run Weave Net inside minimesos
Shell
1
star
97

libmesos

1
star
98

node-openshift-sample

JavaScript
1
star
99

WheelOfFortune

Python
1
star
100

go-utils

Utils library for Go
Go
1
star