Open device management
-
Updated
Sep 11, 2026 - Go
Open device management
Add digests to container and init container images in Kubernetes pod and pod template specs. Use either as a mutating admission webhook, or as a client-side KRM function with kpt or kustomize.
This repository guides you through deploying a private GKE cluster and provides a base platform for hands-on exploration of several GKE related topics which leverage or integrate with that infrastructure. After completing the exercises in all topic areas, you will have a deeper understanding of several core components of GKE and GCP as configure…
A proof-of-concept Linux clone of Santa, Google's binary authorization system for macOS
Google-native secure delivery platform for GKE, built with Cloud Build, Cloud Deploy, Binary Authorization, Terraform, and Cloud Operations
Ensure only Container Images created as part of your CI step are deployed
Pulumi/GCP security patterns: authoritative IAM (+AST tests), keyless CI via Workload Identity Federation, click-ops to IaC adoption, binary authorization.
To associate your repository with the binary-authorization topic, visit your repo's landing page and select "manage topics."