Inspiration

Like it or hate it, Kubernetes is becoming the defacto standard for running workloads (private, public or hybrid). It has evolved into a sort of operating system in cloud but is a beast to understand that is causing a "lot" of mis-configured workloads to be spun causing data breaches and production issues.

What it does

Following the shift-left approach, daTree of checks has a bunch of security policies that validates various K8s objects against industry recommended best practices

How we built it

Relied on the datree.io example template provided and expanded it out to cover policy checks of various different type of K8s objects. The official K8s documentation was heavily utilized to understand the best practices

Challenges we ran into

JSON schema validation was bit of a challenge initially, but got acquainted with it over the course of the hackathon

Accomplishments that we're proud of

Proud of creating 15 valid K8s security policies that checks various different object types

What we learned

datree.io policy enforcement product and JSON schema validation

What's next for Datree of Checks

Definitely explore more and also begin active contribution to datree.io

Built With

Share this project:

Updates