• Stars
    star
    34
  • Rank 766,880 (Top 16 %)
  • Language
  • Created over 5 years ago
  • Updated over 5 years ago

Reviews

There are no reviews yet. Be the first to send feedback to the community and the maintainers!

Repository Details

YAML files accompanying the StackRox Network Policies guide.

More Repositories

1

kube-linter

KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best practices.
Go
2,914
star
2

stackrox

The StackRox Kubernetes Security Platform performs a risk analysis of the container environment, delivers visibility and runtime alerts, and provides recommendations to proactively improve security by hardening the environment.
Go
1,119
star
3

Kubernetes_Security_Specialist_Study_Guide

HCL
420
star
4

admission-controller-webhook-demo

Kubernetes admission controller webhook example
Go
245
star
5

go-grpc-http1

A gRPC via HTTP/1 Enabling Library for Go
Go
111
star
6

helm-charts

Helm charts for StackRox Kubernetes Security Platform
Smarty
62
star
7

collector

Runtime data collection for the StackRox Kubernetes Security Platform using eBPF
C++
52
star
8

contributions

Samples for customer implementations & integrations
Python
47
star
9

scanner

Go
42
star
10

bsidessf-2020-workshop

Materials for a live workshop at BSidesSF on deployment-level Kubernetes security controls
Go
36
star
11

kube-linter-action

GitHub action for automating KubeLinter.
33
star
12

blog-examples

Sample code and files from StackRox blog posts
Open Policy Agent
27
star
13

ansible-demo

Create sales demos on k8s/OpenShift with Ansible
Jinja
15
star
14

k8s-i-use

Source for k8siuse, a site in the style of caniuse that visualizes GVKs and their fields over different versions of the Kubernetes API
CSS
14
star
15

acs-fleet-manager

Go
13
star
16

helmtest

helmtest is a Go-based framework for testing helm charts in various configurations
Go
13
star
17

stackrox-env

Stackrox development environment
Nix
8
star
18

berserker

Workload generator for ACS Collector
Rust
7
star
19

jenkins-plugin

The StackRox Jenkins Plugin for image scanning and security
Java
5
star
20

dev-docs

5
star
21

kernel-packer

📦 Crawl and repackage kernel headers for collector
Python
5
star
22

roxctl-installer-action

5
star
23

k8s-cves

Curated repo of Kubernetes CVEs
Go
4
star
24

central-login

TypeScript
4
star
25

prometheus-metric-parser

Utility to parse prometheus metrics and compare them against other metrics
Go
3
star
26

workflow

Shell
3
star
27

falcosecurity-libs

Internal Fork of https://github.com/falcosecurity/libs
C
3
star
28

rox-ci-image

Dockerfile
3
star
29

istio-cves

Go
3
star
30

dotnet-scraper

.NET scraper houses .NET vulnerabilities, a primitive scraper and a cron job to ensure that we have all the most updated vulns
Go
3
star
31

image-prefetcher

A utility for pre-fetching images onto k8s nodes in parallel
Go
3
star
32

k8s-istio-cve-pusher

This repo pulls CVEs from NVD, filters them and pushes to stackrox google cloud bucket.
Go
2
star
33

junit-parse

Junit parsing CLI
Go
2
star
34

infra

🌧️ Automated infrastructure and demo provisioning
Go
2
star
35

actions

Various Reusable GitHub Actions
Shell
1
star
36

nvdtools

Go
1
star
37

bleve

Go
1
star
38

goland-indexes

Shared indexes for stackrox project
1
star
39

automation-standard

🤖 A micro-framework for building standardized cluster automation entrypoints
Go
1
star
40

docker-registry-client

Public fork of github.com/heroku/docker-registry-client
Go
1
star
41

release-registry

A mechanism to mark, identify and search release artifacts using Quality Milestones.
Go
1
star