Inspiration
Like it or hate it, Kubernetes is becoming the defacto standard for running workloads (private, public or hybrid). It has evolved into a sort of operating system in cloud but is a beast to understand that is causing a "lot" of mis-configured workloads to be spun causing data breaches and production issues.
What it does
Following the shift-left approach, daTree of checks has a bunch of security policies that validates various K8s objects against industry recommended best practices
How we built it
Relied on the datree.io example template provided and expanded it out to cover policy checks of various different type of K8s objects. The official K8s documentation was heavily utilized to understand the best practices
Challenges we ran into
JSON schema validation was bit of a challenge initially, but got acquainted with it over the course of the hackathon
Accomplishments that we're proud of
Proud of creating 15 valid K8s security policies that checks various different object types
What we learned
datree.io policy enforcement product and JSON schema validation
What's next for Datree of Checks
Definitely explore more and also begin active contribution to datree.io
Built With
- datree
- json
- kubernetes
- linux
- shell
- yaml
Log in or sign up for Devpost to join the conversation.