ACM/ASM Workshop
-
Updated
Jan 9, 2024 - CSS
ACM/ASM Workshop
Local reverse proxy that fixes Cline Desktop 403s and stops free-tier models from being billed. OpenAI + Anthropic compatible.
Demo repo with Terraform code to make a RedHat Linux Compute Virtual Machine on Google Cloud Platform using Load Balancer with Cloud Armor
GKE Private Cluster | Terraform IaC | CI/CD: GitHub Actions + WIF (zero SA keys) | Observability: Grafana 11 + Cloud Monitoring + GKE dashboard | DR: Velero + GCS — RTO 4s, RPO <24h | Spot e2-small
Because We don't have $3,000/month for Cloud Armor Enterprise.
This repository provides a Python-based Intrusion Prevention System (IPS) for Google Cloud, automatically blocking malicious IPs via Pub/Sub notifications and dynamically managing firewall rules in your GCP VPC.
Cloud Armor / WAF edge security as code: OWASP preconfigured rules, rate limiting, IP and geo controls, rule optimization within policy limits, and security logging and alerting.
Apigee X in front of private GKE spokes on GCP, connected only through Private Service Connect. Deny-by-default egress, keyless CI via Workload Identity Federation
Terraform infrastructure for routing external HTTPS traffic to a private GKE cluster across two GCP projects using this flow: Cloud Armor → External ALB → PSC → Internal NLB → Private GKE → Nginx Ingress Controller → App
netsec-cloud-armor 🛡️⚡ : Network Security # Cloud Armor # Load Balance
Evidence-first multi-cloud DDoS exposure detection and posture management for AWS, Azure, and GCP — WAF, Shield, origin bypass analysis, and attack-path inference.
A seed and a demo project about how to implement a fail2ban kind functionality in a cloud environment
GKE Autopilot with Terraform — Workload Identity, VPC-native, Cloud Armor WAF, Managed Prometheus
Terraform-based Multi-tier Web Application on Google Cloud with CI/CD, Load Balancing, Cloud Armor, and Monitoring
Modular Terraform for a production GCP landing zone: VPC, private GKE, Artifact Registry, Cloud SQL, Cloud Storage, Global HTTPS LB and Cloud Armor with dev/uat/prod separation and remote state.
A private kubernetes cluster in GKE, a couple of workloads, and an AI agent that handles security findings.
Portfolio: GCP production deployment with Terraform (Cloud Run v2, global HTTPS LB, Cloud Armor, Certificate Manager, optional Cloudflare DNS). GitHub Actions + Workload Identity Federation; sample Node/Express app.
Terraform module for Google Cloud Armor with WAF rules, rate limiting, geo-blocking, bot management, and adaptive protection
Secure GitHub Actions CI/CD pipeline for GKE: Checkov IaC scanning, Trivy container scanning, Workload Identity Federation, Binary Authorization, and Cloud Armor — all gated before prod deploy
To associate your repository with the cloud-armor topic, visit your repo's landing page and select "manage topics."