Kubernetes Policy Management with Kyverno and Nirmata

DevOps and Docker Talk

Episode | Podcast

Date: Fri, 25 Mar 2022 12:38:19 -0400

<p>Jim Bugwadia joins Bret to discuss Kubernetes policy management and "intelligent guardrails for K8s." Jim is the CEO and co-founder of Nirmata. He's also the founder of Kyverno, an CNCF Sandbox Project and open source project for managing policies in Kubernetes. We talk about what Kyverno is, what it isn't, and what problems it solves. We also talk a bit about Narmada and how it expands on that.</p><p>If you're in a team using Kubernetes together, controlling settings and standards in your workloads and clusters can be a constant source of frustration unless you have something to govern those policies across all your workloads and clusters.Streamed live on YouTube on Feb 24, 2022.</p><p><strong>Unedited </strong><a href="https://youtu.be/4uabd0GkqdY"><strong>live recording</strong></a><strong> of the complete show on YouTube (Ep #160). Includes demos.</strong></p><p>★<strong>Topics ★</strong><br /><a href="https://kyverno.io/">Kyverno</a> is a policy engine designed for Kubernetes. With Kyverno, policies are managed as Kubernetes resources, and no new language is required to write policies. This allows using familiar tools such as kubectl, git, and kustomize to manage policies. Kyverno policies can validate, mutate, and generate Kubernetes resources plus ensure OCI image supply chain security. The Kyverno CLI can be used to test policies and validate resources as part of a CI/CD pipeline.<br /><a href="https://nirmata.com/">Nirmata</a> "Intelligent Guardrails for Kubernetes." Security, Compliance, and Operational Readiness of Kubernetes Across the Enterprise<br /><a href="https://www.sigstore.dev/">Sigstore</a> <br /><a href="https://thenewstack.io/linux-foundations-sigstore-aims-to-more-easily-secure-software-supply-chains/">Blog re Sigstore</a>: "Linux Foundation’s Sigstore Aims to Secure Software Supply Chains"</p><p><a href="https://owasp.org/">OWASP </a>Open Web Application Security Project</p><p> ★<strong>Jim Bugwadia ★</strong><br /><a href="https://feeds.transistor.fm/%20https:/twitter.com/JimBugwadia">Jim on Twitter</a></p><p> ★<strong>Join my Community ★</strong></p><p>Best coupons for my <a href="https://www.bretfisher.com/courses"><strong>Docker and Kubernetes courses</strong></a></p><p>Chat with us on our Discord Server <a href="https://discord.com/invite/rnNf8jhKcx"><strong>Vital DevOps</strong></a></p><p>Homepage <a href="https://bretfisher.com/"><strong>bretfisher.com</strong></a></p><p><br /></p> <br /><p><strong>Support this show and get exclusive benefits on </strong><a href="https://patreon.com/BretFisher"><strong>Patreon</strong></a><strong>, </strong><a href="https://www.youtube.com/@BretFisher"><strong>YouTube</strong></a><strong>, or </strong><a href="https://www.bretfisher.com/"><strong>bretfisher.com</strong></a><strong>!</strong></p>