tag-security
tag-security copied to clipboard
🔐CNCF Security Technical Advisory Group -- secure access, policy control, privacy, auditing, explainability and more!
Title: Get to know heimdall - an identity aware proxy Speakers: Dimitrij Drus (@dadrus) Description: I would like to present a project, I'm maintaining - https://github.com/dadrus/heimdall, which is an identity...
Title: Kyverno Status Overview Speakers: @realshuting, @JimBugwadia Description: Give an update about [Kyverno](https://kyverno.io/) since its incubation two years ago, talk about the latest architecture and use cases. Related to [Kyverno's...
Description: Authentication and authorization are the most important security considerations in the cloud-native ecosystem, as evidenced by their high ranking in the OWASP Top 10 and OWASP Top 10 API...
Adding the current WIP documentation so that it is easier to find for contributors rather than referring to previously closed issues. cc @anvega
Title: Verifying multiple cloud providers for security, compliance & costs optimization with a Github Action Speakers: Adrien EPPLING @aeppling & Esteban MATHIA @estebanmathia Description: We've been working on this project...
TAG Leadership is currently organizing a health review of TAG projects (WGs, publications, events, etc). A survey of TAG leads is currently underway, then a survey of the community at...
Description: Maintain a list of incidents that were assessed but do not meet the definition of a software supply chain security compromise Impact: It helps the industry and the community...
The WasmEdge team would like to initiate the CNCF TAG-Security Security Assessment (TSSA) process. Project Name: WasmEdge Github URL: https://github.com/WasmEdge/WasmEdge CNCF project stage and issue: https://github.com/cncf/toc/issues/1316 (sandbox) Security Provider: No...
The initial self-assessment for WasmEdge(#1337) Authors: dm4(@dm4) Security reviewers: dm4(@dm4), Yi-Ying He(@q82419), Shen-Ta Hsieh(@ibmibmibm), Hung-Ying Tai(@hydai) Here is the draft of the WasmEdge Project Security Self-Assessment. Please feel free to...
Description: Figure 3 and Figure 4 are repeated in the whitepaper PDF file Impact: No diagram for the Deploy lifecycle phase. Scope: CNCF Cloud Native Security Whitepaper May 2022 Additional...