capsule
capsule copied to clipboard
Multi-tenancy and policy-based framework for Kubernetes.
# Describe the feature We have a need to control cluster-scoped RBAC for a Tenant, to allow it cluster-scoped access to things outside of its Tenant. Today we do this...
# Describe the feature Adds Impersonation to TenantResources. Adds Default Kube-Server to CapsuleConfiguration. Adds DefaultServiceAccount to CapsuleConfiguration
# Describe the feature Currently theres only TenantOwner as a concept. I would like to add one more role which is the TenantReader which gets only viewing permissions to all...
# Describe the feature Currently it's possible to specify fobibben labels and annotations on namespaces. But no way of forbiddin labels or annotations on Pods. Also, it would be nice...
# Describe the feature All to load a bigger context for templating in the tenantResources
# Describe the feature Currently we support different approaches to creating tls certificates: - certManager certificates - Self-signed + CA-Controller # What would the new user story look like? We...
While we are trying to achieve a stable project status, we still have some major features, that we like to address. Currently we only have 2 active members and seek...