跳到主要内容

vArmor

Cloud-native container sandbox system for Kubernetes security.

Enhanced Security

Leverages Linux technologies like AppArmor, BPF, and Seccomp to harden containers.

Cloud Native

Integrates seamlessly with Kubernetes, providing powerful sandboxing mechanisms through CRDs.

Quick Deployment

Manage vArmor with Helm, and apply policies with built-in rules that are ready to use out of the box.

License

vArmor is licensed under Apache 2.0. The eBPF code is located at vArmor-ebpf and is GPL-2.0 licensed.

Credits

Uses cilium/ebpf for eBPF management. References parts of kyverno code by Nirmata.