mirror of https://github.com/vee1e/kubearmor-client - KubeArmor cli tool aka kArmor 🤖
Find a file
Vishnu Soman e0da8a1475 add no sec to json encoding
Signed-off-by: Vishnu Soman <vishnu@accuknox.com>
2026-05-20 16:32:38 +05:30
.github/workflows Update ossf/scorecard-action action to v2.4.1 2025-05-20 07:00:46 +00:00
cmd probe: fix namespace field to the policies list 2026-01-02 10:21:04 +05:30
deployment probe: fix namespace field to the policies list 2026-01-02 10:21:04 +05:30
docker rename unused variable 2025-07-21 10:47:50 +05:30
hacks
install probe: fix namespace field to the policies list 2026-01-02 10:21:04 +05:30
k8s feat: (recommend) Implement recommend functionality for Docker Client 2025-07-15 21:29:08 +05:30
log chore(policy): add kubearmor network policy 2026-05-20 16:32:38 +05:30
probe probe: fix namespace field to the policies list 2026-01-02 10:21:04 +05:30
profile probe: fix namespace field to the policies list 2026-01-02 10:21:04 +05:30
recommend add no sec to json encoding 2026-05-20 16:32:38 +05:30
rotatetls
selfupdate probe: fix namespace field to the policies list 2026-01-02 10:21:04 +05:30
sysdump probe: fix namespace field to the policies list 2026-01-02 10:21:04 +05:30
tests probe: fix namespace field to the policies list 2026-01-02 10:21:04 +05:30
utils probe: fix namespace field to the policies list 2026-01-02 10:21:04 +05:30
version
vm chore(policy): add kubearmor network policy 2026-05-20 16:32:38 +05:30
.gitignore Support karmor install for non-k8s environment (#475) 2025-05-20 12:28:28 +05:30
.goreleaser.yaml fix-go-release 2025-11-20 12:47:23 +05:30
CONTRIBUTING.md remove deprecated package vm 2025-01-16 20:15:02 +05:30
go.mod chore(policy): add kubearmor network policy 2026-05-20 16:32:38 +05:30
go.sum chore(policy): add kubearmor network policy 2026-05-20 16:32:38 +05:30
install.sh using PWD as tmp dir when access to /tmp/ is not available 2025-04-26 12:31:43 +05:30
LICENSE
main.go
Makefile Karmor support for windows and removal of cilium (#471) 2025-01-16 17:03:45 +05:30
README.md remove deprecated package vm 2025-01-16 20:15:02 +05:30
renovate.json Feat: added postUpdate option in Renovate for go tidy (#429) 2024-05-07 11:58:05 +05:30

OpenSSF Scorecard FOSSA Status

karmor

karmor is a client tool to help manage KubeArmor.

Installation

curl -sfL http://get.kubearmor.io/ | sh -s

Installing From Source

Build karmor from source if you want to test the latest (pre-release) karmor version.

git clone https://github.com/kubearmor/kubearmor-client.git
cd kubearmor-client
make install

We sign all releases with cosign, therefore we recommend verifying karmor tarball prior to its installation.

Below are the instructions to verify the binary using cosign for version v1.1.0.

  • Use an environment variable to set the karmor version
export KARMOR_VERSION="1.1.0"
  • Download released tarball, certificate, and signature files
Download Details
curl -LO https://github.com/kubearmor/kubearmor-client/releases/download/v${KARMOR_VERSION}/karmor_${KARMOR_VERSION}_linux_amd64.tar.gz

curl -LO https://github.com/kubearmor/kubearmor-client/releases/download/v${KARMOR_VERSION}/karmor_${KARMOR_VERSION}_linux_amd64.tar.gz.cert

curl -LO https://github.com/kubearmor/kubearmor-client/releases/download/v${KARMOR_VERSION}/karmor_${KARMOR_VERSION}_linux_amd64.tar.gz.sig
  • Verify the released tarball integrity with cosign
Verification Details
cosign verify-blob karmor_${KARMOR_VERSION}_linux_amd64.tar.gz --certificate-identity=https://github.com/kubearmor/kubearmor-client/.github/workflows/release.yml@refs/tags/v${KARMOR_VERSION} --certificate-oidc-issuer=https://token.actions.githubusercontent.com --signature karmor_${KARMOR_VERSION}_linux_amd64.tar.gz.sig --certificate karmor_${KARMOR_VERSION}_linux_amd64.tar.gz.cert

Usage

CLI Utility to help manage KubeArmor

KubeArmor is a container-aware runtime security enforcement system that
restricts the behavior (such as process execution, file access, and networking
operation) of containers at the system level.

Usage:
  karmor [command]

Available Commands:
  completion  Generate the autocompletion script for the specified shell
  help        Help about any command
  install     Install KubeArmor in a Kubernetes Cluster
  logs        Observe Logs from KubeArmor
  probe       Checks for supported KubeArmor features in the current environment
  profile     Profiling of logs
  recommend   Recommend Policies
  rotate-tls  Rotate webhook controller tls certificates
  selfupdate  selfupdate this cli tool
  sysdump     Collect system dump information for troubleshooting and error report
  uninstall   Uninstall KubeArmor from a Kubernetes Cluster
  version     Display version information
  vm          VM commands for non kubernetes/bare metal KubeArmor

Flags:
      --context string      Name of the kubeconfig context to use
  -h, --help                help for karmor
      --kubeconfig string   Path to the kubeconfig file to use

Use "karmor [command] --help" for more information about a command.

License

FOSSA Status