Kubernetes-native framework for policy-driven eBPF cluster attestation and TPM-anchored integrity.
4.1K
BPFIMA is a cloud-native security framework that combines the deep observability of eBPF with the hardware-anchored trust of traditional Linux Integrity Measurement Architecture (IMA). It enables administrators to enforce cryptographically verifiable, privacy-preserving runtime attestation across dynamic Kubernetes clusters. It is based on a kernel module, eBPF programs and an user space tool
This multi-architecture (x86_64 and ARM64) Docker image serves as both the runtime execution environment and the dynamic builder for the BPFIMA framework. It contains the components to build, install, and configure the framework on a Linux node (Fedora, Ubuntu, or Debian) equipped with a TPM 2.0.
The Helm chart provides an automated deployment model by provisioning:
To deploy the framework to your cluster, install the Helm chart directly from this registry:
helm install bpfima oci://registry-1.docker.io/iochia02/bpfima \
--version 0.1.0 \
--namespace bpfima-system \
--create-namespace
For advanced configuration parameters (such as targeting specific TPM PCR indexes), detailed policy examples, and source code, please refer to the official BPFIMA GitHub Repository.
Content type
Image
Digest
sha256:c3ea9cb6f…
Size
377 MB
Last updated
7 days ago
docker pull iochia02/bpfima:v0.2