Giter Site home page Giter Site logo

mdclarkson / awesome-policy-as-code Goto Github PK

View Code? Open in Web Editor NEW

This project forked from hysnsec/awesome-policy-as-code

0.0 0.0 0.0 113 KB

A curated list of policy-as-code resources like blogs, videos, and tools to practice on for learning Policy-as-Code.

License: Creative Commons Zero v1.0 Universal

awesome-policy-as-code's Introduction

Awesome Policy-as-Code Awesome

List of awesome resources about Policy-as-Code included blogs, videos, and tools.

Contents

Blogs

Getting Started

Infrastructure-as-Code

CI/CD

Kubernetes

AWS

Azure

Videos

Getting Started

Infrastructure-as-Code

CI/CD

Kubernetes

Others

Tools

  • OPA - An open source, general-purpose policy engine that enables unified, context-aware policy enforcement across the entire stack

  • Styra DAS - Commercial tools for managing OPA at scale and created by the founders and maintainers of Open Policy Agent (OPA)

  • OPAL - Policy and data administration, distribution, and real-time updates on top of Open Policy Agent

  • OPCR - An open-source project that secures the software supply chain of OPA policies.

  • Topaz - An open-source authorization project that provides a data plane for OPA policies.

  • HashiCorp Sentinel - A language and framework for policy built to be embedded in existing software to enable fine-grained, logic-based policy decisions

  • Regula - A tool that evaluates CloudFormation and Terraform infrastructure-as-code for potential AWS, Azure, and Google Cloud security and compliance violations prior to deployment

  • Intercept - Policy as Code static analysis auditing

  • Checkov - A static code analysis tool for infrastructure-as-code

  • Terrascan - Detects security vulnerabilities and compliance violations across your Infrastructure as Code

  • kics - Find security vulnerabilities, compliance issues, and infrastructure misconfigurations earlier

  • Gatekeeper - Policy Controller for Kubernetes

  • Gatekeeper Policy Manager (GPM)- A simple to use web-based Gatekeeper policies manager

  • Konstraint - A policy management tool for interacting with Gatekeeper

  • Kyverno - A policy engine designed for Kubernetes. It can validate, mutate, and generate configurations using admission controls and background scans

  • kube-mgmt - Sidecar for managing OPA on top of Kubernetes

  • MagTape - A Policy-as-Code tool for Kubernetes that allows for evaluating Kubernetes resources against a set of defined policies to inform and enforce best practice configurations

  • Fregot - A set of tools for working with the Rego policy language, which is part of the Open Policy Agent (OPA) policy engine

  • Deprek8ion - A set of rego policies to monitor Kubernetes APIs deprecations

  • Cloud Custodian - Rules engine for cloud security, cost optimization, and governance, DSL in yaml for policies to query, filter, and take actions on resources

Sponsor

Practical DevSecOps

Contributing

Please refer the guidelines at contributing.md for details.

awesome-policy-as-code's People

Contributors

castrojo avatar myugan avatar noashavit avatar secfigo avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.