KubeArmor is a runtime Kubernetes security engine. It uses eBPF and Linux Security Modules(LSM) for fortifying workloads based on Cloud Containers, IoT/Edge, and 5G networks. It enforces policy-based controls. KubeArmor is a runtime Kubernetes security engine. It uses eBPF and Linux Security Modules(LSM) for fortifying workloads based on Cloud Containers, IoT/Edge, and 5G networks. It enforces policy-based controls. KubeArmor lessens the attack surface on pods, containers, and virtual machines. For inline mitigation, it uses Linux Security Modules (LSMs) like AppArmor, BPF-LSM, and SELinux to provide security without changing the pod or container or without host-level adjustments. KubeArmor simplifies their intricacies and makes enforcing policy simple. It functions as a non-privileged daemonset and has host, pod, and container monitoring capabilities.

Features

  • Our inline approach is proactive, in contrast to post-attack mitigation
  • Boost your security with KubeArmor in simple steps
  • KubeArmor limits particular behaviors of processes, file access, networking operations, and resource usage
  • Based on container or workload identities, LSMs are used to enforce security policies in real-time
  • Policy development based on Kubernetes metadata
  • Get logs for policy breaches while keeping track of container processes via eBPF
  • KubeArmor manages LSM complexity to simplify policy descriptions

Project Samples

Project Activity

See All Activity >

Categories

Security

License

Apache License V2.0

Follow KubeArmor

KubeArmor Web Site

Other Useful Business Software
$300 in Free Credit Towards Top Cloud Services Icon
$300 in Free Credit Towards Top Cloud Services

Build VMs, containers, AI, databases, storage—all in one place.

Start your project in minutes. After credits run out, 20+ products include free monthly usage. Only pay when you're ready to scale.
Get Started
Rate This Project
Login To Rate This Project

User Reviews

Be the first to post a review of KubeArmor!

Additional Project Details

Operating Systems

Linux, Mac, Windows

Programming Language

Go

Related Categories

Go Security Software

Registered

2024-03-26