Company
Date Published
Author
Pas Apicella
Word count
2064
Language
English
Hacker News points
None

Summary

Pulumi is an open-source tool that enables developers to build code in multiple languages, such as JavaScript, Python, Go, TypeScript, and .NET, to create infrastructure as code (IaC). It supports Google Cloud, where a Pulumi stack can be created for automating the Snyk Kubernetes integration for containers. The process involves setting up a Kubernetes integration ID from the Snyk app, cloning a sample repository, authenticating to Google Cloud, creating a new Pulumi stack and configuring required settings, deploying everything with `pulumi up`, and retrieving the Kubernetes config. Once set up, the Snyk controller is installed in the snyk-monitor namespace, along with a config map and secret managed by Pulumi. The integration enables importing and testing running workloads and identifying vulnerabilities in their associated images and configurations that might make those workloads less secure.