#OpenPolicyAgent

2025-06-18

Skipper deployed as ingress in your #kubernetes cluster and #OpenPolicyAgent as rule engine got a significant speedup github.com/zalando/skipper/rel
Blue line “old” Red line “new”

Graph shows ns/op , blue line significantly slower than red
Open Policy Agent (OPA)openpolicyagent@infosec.exchange
2025-04-21

Great blog from Square, on how they built a custom solution for #Kubernetes guardrails on top of Open Policy Agent. This is a perfect example of the flexibility OPA provides organizations to solve the most advanced use cases!

developer.squareup.com/blog/ku

#OPA #OpenPolicyAgent #CloudNative #CNCF #DevOps #DevSecOps

Open Policy Agent (OPA)openpolicyagent@infosec.exchange
2025-04-15

The #KubeCon recordings are now on YouTube! We'll be posting links to all the #OpenPolicyAgent related ones as we watch them. First out is the #OPA maintainer track session, where @charlieegan3 and @anderseknert give a short introduction to OPA and Rego, followed by a deep-dive into recent performance improvements, and a sneak peek at the project roadmap. Check it out!

youtube.com/watch?v=XtA-NKoJDaI

#CloudNative #CNCF #DevOps #DevSecOps #PolicyAsCode

2025-04-03

For anyone at #KubeCon, me and @charlieegan3 will close the day off by presenting an introduction, deep-dive and roadmap for #OpenPolicyAgent at 17:30. I know it’s late, but stick around, as we have a lot of cool things to show you!

kccnceu2025.sched.com/event/1t

#CloudNative #CNCF #DevOps #OPA #Rego

2025-03-28

Today I was in the mood and packaged #regal and #opa for @opensuse

Packages still need more testing, but the first steps are done. Found a glitch in the OPA ldflags handling and reported it upstream.

Should arrive in #Tumbleweed soon-ish.

#packagerslife #policyascode #OpenPolicyAgent #opensuse

2024-12-20

9 years. I guess we’re doing this..

#OpenPolicyAgent #OPA

Screenshot from GitHub saying ”Prepare v1.0.0 release”
2024-07-27

Dependency Management Data's Open Policy Agent support is now a whole lot more efficient

Talking about the latest release of Dependency Management Data and some refactoring that's led to better performance.

fed.brid.gy/r/https://www.jvt.

Featured image for sharing metadata for article
2024-07-14

Dynamically querying EndOfLife.date data for internal packages with Open Policy Agent and Dependency Management Data

How you can retrieve End-of-Life data via EndOfLife.date using Dependency Management Data's Policies functionality.

fed.brid.gy/r/https://www.jvt.

Featured image for sharing metadata for article
2024-05-16

Avec Thomas Foubert, nous découvrons le Policy as Code (PaC) qui permet de définir et appliquer programmatiquement des politiques/contrôles sur les déploiements.

💻 Avec des outils comme OPA, on peut industrialiser audits & validation de conformité dès les pipelines de déploiement cloud!

#CloudSecurity #AutomationCloud #OpenPolicyAgent
🎧 Web: bit.ly/3wAe9xi
🎧 Spotify: spoti.fi/4bFQkms
🎧 YouTube: bit.ly/4bFQjPq

Elizabeth K. Josephpleia2@floss.social
2024-04-05

We also saw community-driven efforts to support CI, binaries, and containers for the Eventing #Kafka Broker receiver & dispatcher (containers), #OpenPolicyAgent's Conftest (ci, binaries), #Skupper (ci, binaries), #Goss (ci, binaries), & rotobuf-maven-plugin (ci) 🎉

2024-03-26

At last! Our #KubeCon talk "Open Policy Agent — Intro and Deep Dive" is now up on YouTube 😃 I can't stand hearing / watching myself talk, but hopefully you won't feel the same aversion. Covering an intro to the project, some updates, a roadmap, and much more. Check it out!

youtube.com/watch?v=hENwFyrtm1

#OpenPolicyAgent #OPA #Rego #Gatekeeper

2024-03-21

Good morning from #KubeCon! If you’re here and want to meet, find me in the #OpenPolicyAgent kiosk in the project pavilion. Also, don’t miss my talk on today at 15:25 if you’re curious about #OPA, #Rego, and anything related.

kccnceu2024.sched.com/event/1Y

2024-03-01

Межсервисная авторизация в Авито PaaS

Антон Губарев, инженер в Avito PaaS, рассказал, как реализовать межсервисную авторизацию на 2500 сервисов и ничего не сломать.

habr.com/ru/companies/avito/ar

#istio #envoy #opa #openpolicyagent

2024-01-31

Anyone have a good write up/how-to for standing up #OpenPolicyAgent server? Looking at the documentation, I'm a bit lost on how to point it to rego files, and how to have my clients call OPA to evaluate their JSON.

My use case is kind of fun - have all my team's Terraform repos do a pre-merge OPA evaluation on the Terraform plan. I'd like to get away from bundling the rego with the repos - the developers could just change the accept criteria and hope nobody notices in the pull request.

So success looks like having a rego file on a remote opa server that will allow a user to POST a url with their terraform plan, and get back the results.

Any ideas?

(ping @anderseknert)

#Terraform #CICD #OPA #OpenPolicyAgent

2024-01-05

@anderseknert This looks really cool - I need to carve out some time at work to dive back into Open Policy Agent. We have a decent little workflow for validating Terraform plans, but I'd love to get it further refined.

Plus, getting a OPA server rather than trusting the engineers/pipeline to validate their own policy would be nice.

#OPA #OpenPolicyAgent #Terraform #workflows

2024-01-05

What better way to spend the weekend than with a new version of #Regal? Everyone's favorite #Rego linter now have 2 more new rules, and some other nice improvements added. Check it out!

github.com/StyraInc/regal/rele

#OPA #OpenPolicyAgent #DevOps #DevSecOps #PolicyAsCode

2023-12-20

Just published! #OpenPolicyAgent 2023, year in review. It’s always such a joy looking back at everything that happened in our community in the past year. And for a project the size of #OPA, it’s a *lot*.

Thanks @charlieegan3, @ritazh and @jpreese for co-authoring the blog with me.

Check it out!

blog.openpolicyagent.org/open-

#CloudNative #CNCF #OpenSource

2023-12-05

Regal v0.14.0 just released! 🎉 The latest edition of the #OPA community's favorite #Rego linter features two new rules, a new output format, and many improvements and fixes. Release notes and downloads here: github.com/StyraInc/regal/rele

#OpenPolicyAgent #DevOps #DevSecOps #PolicyAsCode #Linter #CodeQuality #IAM

2023-12-04

Join me for HashiTalks Deploy where I'll talk about my fun little side project: the Nomad Admission Control Proxy 🎉

youtube:
youtube.com/watch?v=DAqLXZlxiMQ

schedule:
events.hashicorp.com/hashitalk

github:
github.com/mxab/nacp

2023-11-24

You can now use Open Policy Agent with dependency-management-data

How to use Open Policy Agent to perform much more effective flagging of package compliance with dependency-management-data.

fed.brid.gy/r/https://www.jvt.

Featured image for sharing metadata for article

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst