Session

The OPA Toolbox: Enforcing Policy Throughout the Application Lifecycle

The Open Policy Agent has become a crucial component of many Kubernetes clusters, but its use cases go far beyond enforcing policies and securing workloads. Its generic purpose design makes it possible for other tools to use the Open Policy Agent as a library, which provides a consistent means of policy enforcement throughout the entire lifecycle of the application.

In this talk, we will look at the tools that use the Open Policy Agent, including:
- Writing unit tests for Kubernetes manifests using Conftest.
- Generating policy templates and documentation using Konstraint.
- Policy enforcement and auditing within the cluster using Gatekeeper.

Attendees will walk away with knowledge about the different tools that implement the Open Policy Agent today and how they can be used to enforce policy from local development to production.

John Reese

Software Engineer at Yubico

Actions

Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.

Jump to top