Open security core for dev sec ops on kubernetes
- Created docs/NetkingdomRuntimeArchitecture.md (comprehensive, specific-as-deployed): - Planes (bootstrap/control/tenant + recursive trust) - Identity/MFA/OIDC (lightweight key-cape: LLDAP/Authelia/privacyIDEA + KeyCape https://kc.coulomb.social; clients, claims, groups) - Authelia handoff, OpenBao OIDC+secrets path (SOPS/age -> runtime leases/K8s/audit) - Bootstrap console/UI state (S6, gates, 0019 dry-run additions, web-ui, evidence) - State Hub relation, k8s/DNS/routes/ingress/trust (concrete hosts/ns) - Pragmatic audit paths (local-identity TSV, PVC+mock, State Hub/console) - UE integration points + 7 gaps (per assessment + boundary contract refs) - Operational assumptions + rebuild notes - Updated NET-WP-0018 workplan: T02 status done + detailed 2026-06-03 completion note - Used pragmatic tracking throughout (progress events with task_id 121ee797..., file notes, this commit) - Per T02 spec + Coordination Notes guidance on pragmatic for impl/retrospect This doc is now the baseline for T03 retrospective/gap matrix (incl. audit), T05 guide, T06/T08 control surface/validations, T09 risk assessment. |
||
|---|---|---|
| .claude | ||
| .githooks | ||
| canon | ||
| docs | ||
| examples | ||
| keys | ||
| local-identity | ||
| sso-mfa | ||
| tools | ||
| wiki | ||
| workplans | ||
| .custodian-brief.md | ||
| .gitignore | ||
| .sops.yaml | ||
| AGENTS.md | ||
| CLAUDE.md | ||
| CONFIG.md | ||
| DECISIONS.md | ||
| INTENT.md | ||
| LICENSE | ||
| Makefile | ||
| README.md | ||
| SCOPE.md | ||
NetKingdom
NetKingdom provides a dynamic self optimizing full circle security-platform for kubernetes deployed IT-infrastructures.