A community-owned library of Kubernetes System and Network policies
Please follow the hierarchy while contribution
.
├── mitre
│ ├── network
│ │ └── cnp-firewall-world-block.yaml
│ ├── system
│ │ └── ksp-postgres-allow.yaml
│ │ └── ksp-privilage-pod-block.yaml
├── pci-dss
│ ├── network
│ │ └── cnp-cardholder-data-block.yaml
│ ├── system
│ │ └── ksp-protect-cardholder-data-audit.yaml
├── nist
│ ├── network
│ │ └── cnp-account-management-block.yaml
│ ├── system
│ │ └── ksp-remote-file-copy-block.yaml
│ │ └── ksp-active-directory-audit.yaml
├── cves
│ ├── network
│ │ └── cnp-CVE-2009-0932.yaml
│ ├── system
│ │ └── ksp-CVE-2021-29156.yaml
│ │ └── ksp-CVE-2021-29442.yaml
...
Please navigate to https://kubearmor.gitbook.io for detailed documentation to deploy KubeArmor and create own custom templates. We have also added a set of templates to help you understand how things work.
Policy-templates is powered by major contributions from the community and an initiative from AccuKnox. Refer Contribution for more info
Got questions / doubts / ideas to discuss? Feel free to open a discussion on Github discussions board.