Open device management
-
Updated
Sep 13, 2026 - Go
Open device management
Add digests to container and init container images in Kubernetes pod and pod template specs. Use either as a mutating admission webhook, or as a client-side KRM function with kpt or kustomize.
This repository guides you through deploying a private GKE cluster and provides a base platform for hands-on exploration of several GKE related topics which leverage or integrate with that infrastructure. After completing the exercises in all topic areas, you will have a deeper understanding of several core components of GKE and GCP as configure…
A proof-of-concept Linux clone of Santa, Google's binary authorization system for macOS
Ensure only Container Images created as part of your CI step are deployed
Google-native secure delivery platform for GKE, built with Cloud Build, Cloud Deploy, Binary Authorization, Terraform, and Cloud Operations
Four Pulumi/GCP patterns where a subtle IaC mistake is a security incident — authoritative IAM, keyless CI (WIF), click-ops adoption, BinAuthz.
To associate your repository with the binary-authorization topic, visit your repo's landing page and select "manage topics."