Chainguard

Chainguard Academy

  • Product Docs
    • Chainguard Enforce
    • Chainguard Images
    • chainctl
  • Open Source
    • Sigstore
    • Wolfi
    • apko
    • melange
    • Open Containers
    • SBOMs
    • SLSA
  • Software Security
    • What is Software Supply Chain Security
    • How to Select a Secure Base Image
    • Secure Software Recommendations
    • Glossary
    • Videos


  • GitHub
  • Twitter

How to Install Sigstore Policy Controller

Install the Sigstore Policy Controller into a Kubernetes Cluster

Disallowing Non-Default Capabilities

Using Policy Controller to prevent running pods with extra capabilities

Disallowing Privileged Pods

Using Policy Controller to prevent running privileged pods

Disallowing Run as Root User

Using Policy Controller to prevent running pods as root

Maximum Container Image Age

Maximum container image age with Policy Controller

Disallowing Unsafe sysctls

Use Policy Controller to limit pods to safe sysctls

Verify Signed Chainguard Images

Using Policy Controller to Verify Signed Chainguard Images
  • ««
  • «
  • 1
  • 2
  • »
  • »»
  • ©2023 Chainguard, CC BY-NC-SA 4.0