39 repositorios
Systems that manage network traffic routing based on predefined configuration rules and authentication requirements.
Explore 39 awesome GitHub repositories matching devops & infrastructure · Routing. Refine with filters or upvote what's useful.
Openclaw es una plataforma para gestionar entornos de ejecución de agentes, proporcionando la infraestructura para controlar los ciclos de vida de los agentes, el estado de la sesión y la persistencia del espacio de trabajo. Cuenta con una puerta de enlace centralizada que maneja bucles de modelos, invocación de herramientas y eventos de streaming, al tiempo que admite el enrutamiento multi-agente y la gestión de memoria persistente. El sistema está diseñado para normalizar las firmas de ejecución de herramientas y proporcionar una interfaz estandarizada para la compatibilidad entre proveedores. La plataforma incluye amplias herramientas para desarrolladores, como una interfaz de línea de comandos para la gestión del espacio de trabajo, registro de diagnósticos y una arquitectura de plugins que permite el registro de herramientas y capacidades personalizadas. Admite flujos de trabajo automatizados a través de hooks basados en eventos, programación de tareas e integración con servicios externos. La seguridad se gestiona mediante políticas de ejecución, portabilidad de credenciales y flujos de trabajo de aprobación para las acciones de los agentes. La implementación es compatible con instaladores de infraestructura automatizados y helpers de puerta de enlace en contenedores, con utilidades integradas para copias de seguridad y gestión de configuración. El sistema proporciona un formato estructurado para orquestar flujos de trabajo de varios pasos e incluye herramientas especializadas para la automatización del navegador y la aplicación de parches de código estructurados.
Restricts request throughput based on user identity or origin to protect service stability and prevent resource exhaustion.
Este proyecto es un directorio integral curado por la comunidad que organiza un vasto panorama de bibliotecas, frameworks y herramientas de software de Python. Sirve como una base de conocimientos centralizada diseñada para facilitar la navegación del ecosistema y acelerar el descubrimiento de desarrolladores en todo el ciclo de vida del desarrollo de software. El directorio se distingue por proporcionar un índice estructurado de recursos categorizados por dominio técnico, que van desde utilidades de desarrollo fundamentales hasta campos de ingeniería especializados. Cubre capacidades de alto nivel que incluyen inteligencia artificial, ciencia de datos, desarrollo web y gestión de infraestructura, lo que permite a los desarrolladores identificar soluciones verificadas para desafíos técnicos específicos. El proyecto abarca una amplia superficie de capacidades, incluyendo herramientas para la gestión de dependencias, análisis de código estático y pruebas automatizadas. También cataloga recursos para el almacenamiento de datos persistentes, orquestación de infraestructura en la nube y desarrollo de interfaces, proporcionando una referencia unificada para construir y mantener sistemas de software complejos.
Emulate complex network topologies and manage software-defined configurations for testing virtualized environments.
Laravel is a comprehensive full-stack web framework designed for building scalable server-side applications. It provides an integrated development environment that centers on an object-relational mapper for database abstraction, a robust routing system, and a sophisticated service container for dependency injection. The framework is built to handle complex application requirements through a modular architecture that emphasizes convention over configuration. What distinguishes Laravel is its deep integration of background processing and event-driven communication. It features a task queue orch
Limits incoming traffic by applying custom constraints based on user identity or origin IP address.
This project provides a remote development platform that enables users to access a full-featured integrated development environment through a standard web browser. By decoupling the user interface from the server-side filesystem, it allows for persistent coding workspaces to be hosted on remote servers, virtual machines, or cloud-native infrastructure, ensuring a consistent development experience from any device. The platform distinguishes itself through a secure gateway architecture that manages traffic, authentication, and encryption at the edge. It utilizes persistent WebSocket connections
Acts as a proxy-based gateway that centralizes traffic management and enforces strict authentication for development services.
Flask is a micro web framework designed for building web services with a flexible, lightweight structure. It functions as a standard-compliant WSGI application server, providing the essential tools required to register URL routes, handle incoming HTTP requests, and construct responses. By utilizing a central application object, it allows developers to manage routing rules, template settings, and resource loading within a unified project environment. The framework distinguishes itself through a modular component architecture that enables the organization of routes, templates, and static files
State propagation ensures shared metadata and request-specific variables remain accessible throughout the entire lifecycle of a web transaction.
Traefik is a cloud-native edge router and API gateway designed to manage service communication and traffic flow across distributed infrastructure. It functions as a dynamic service proxy that automatically discovers backend services and configures routing rules in real time, eliminating the need for manual restarts or complex configuration updates. By integrating directly with container orchestrators and service registries, it maintains a consistent state for network traffic, load balancing, and security policy enforcement. The project distinguishes itself through its deep integration with di
Uses container metadata labels to define and automate complex traffic routing rules.
This project is an administrative reference for Docker, providing guides and command references for system maintenance, image building, network configuration, and security hardening. It serves as a comprehensive manual for managing the container lifecycle and performing general system administration. The reference covers the construction and optimization of images through build files, layering strategies, and registry integration. It also provides instructions for configuring isolated virtual networks, mapping ports, and implementing security hardening using Linux capabilities and read-only f
Guides the creation and management of isolated virtual networks to enable secure communication and service discovery.
Parse Server is a backend-as-a-service solution and Node.js framework that provides a ready-to-use REST and GraphQL API for mobile and web applications. It functions as a core backend infrastructure for managing database schemas, user authentication, and API routing. The system distinguishes itself with a real-time data engine that pushes database updates to clients via WebSockets and a GraphQL server that automatically generates schemas based on application data models. It also features an adapter-based storage layer that abstracts interactions with various cloud and local backends. The pla
Constrains the number of requests allowed to specific route patterns to prevent resource abuse.
Lima is a virtualization engine designed to provision and manage lightweight Linux, macOS, and FreeBSD virtual machines. It functions as a comprehensive virtual machine manager that leverages native hypervisors and system emulation to provide isolated environments for container development, cross-architecture testing, and secure sandboxing. The project distinguishes itself through its template-driven provisioning system, which allows users to define and automate environment configurations via local files or remote URL schemes. It integrates deeply with host systems by providing automated file
Creates, deletes, and lists isolated network segments for virtual machines to control connectivity.
CS-Base is a comprehensive educational platform and technical repository designed to support software engineers in mastering backend architecture, artificial intelligence engineering, and career development. It functions as a centralized knowledge hub that combines illustrated theoretical tutorials with practical, project-based learning to bridge the gap between foundational computer science concepts and professional industry requirements. The project distinguishes itself by integrating a robust career mentorship framework with advanced AI engineering resources. It provides users with tools f
Transmits cancellation, timeout, and deadline signals across API boundaries and process hierarchies to manage request lifecycles.
WSABuilds is a management framework designed to deploy and customize virtualized mobile runtime environments on desktop operating systems. It provides a comprehensive suite of tools for building, installing, and maintaining these environments, enabling the native execution of mobile applications alongside standard desktop software. The project distinguishes itself through its focus on deep system integration and lifecycle management. It allows users to generate tailored virtual environment packages by injecting administrative tools, service components, and specific configurations prior to dep
Resolves connectivity issues by identifying and removing conflicting virtual network adapters that disrupt internet access.
kops is a Kubernetes cluster provisioner and lifecycle manager designed to automate the creation, maintenance, and destruction of production-grade clusters on cloud infrastructure. It functions as a declarative infrastructure manager, synchronizing the live state of a cluster with versioned manifests stored in remote object storage to ensure idempotent operations. The project distinguishes itself by offering comprehensive automation for the entire cluster lifecycle, including high-availability control plane deployment, incremental rolling updates, and automated version upgrades. It also serve
Installs and configures Cilium as the primary eBPF-powered networking interface for the cluster.
EasyTier is a decentralized peer-to-peer virtual private network and mesh networking tool. It functions as a layer 3 network overlay that establishes secure tunnels between devices without requiring a centralized server or coordinator. It also serves as a WireGuard-compatible VPN, capable of acting as a server for standard WireGuard clients. The project distinguishes itself through multipath latency-based routing and the use of KCP or QUIC proxies to mitigate packet loss and stabilize connections in high-loss environments. It provides a virtual networking manager featuring a web management co
Provides a comprehensive management suite featuring a web console, GUI, and RPC API for network configuration.
Bunkerized Nginx is a containerized security automation system that provides a secure reverse proxy and web application firewall. It focuses on protecting web applications by monitoring container labels within cloud-native orchestration systems to automatically update security settings and firewall rules. The system distinguishes itself through automated security operations, including the automatic management of SSL certificates and an automated client banning mechanism that blocks IP addresses based on HTTP status codes. It features bot challenge mechanisms using CAPTCHAs, JavaScript, or coo
Automatically generates proxy routing rules based on container metadata labels within the orchestration system.
Runtipi is a home server dashboard and orchestration tool designed for deploying and managing containerized applications. It provides a web-based interface for discovering and installing software from a curated app store, utilizing a Docker Compose orchestrator to handle the deployment of self-hosted services. The system integrates a reverse proxy and SSL manager to route external traffic to internal containers, automating HTTPS certificate renewal and domain assignment. It also features a built-in backup and update manager that uses cron-based scheduling to perform automatic security patchin
Implements non-standard routing rules by utilizing specialized metadata labels on containers.
Flare-VM es un entorno de análisis de malware para Windows que consiste en scripts de instalación que automatizan el aprovisionamiento de una máquina virtual. Proporciona un conjunto integral de herramientas de ingeniería inversa, incluyendo descompiladores y depuradores, junto con las configuraciones del sistema y variables de entorno necesarias para la investigación de seguridad. El proyecto funciona como un orquestador de imágenes de máquinas virtuales, permitiendo la creación, gestión y exportación automatizadas de dispositivos de análisis especializados. Cuenta con selección de herramientas basada en configuración y la capacidad de extender la lógica de instalación mediante modificaciones personalizadas del registro y definiciones de diseño del sistema. El sistema incluye capacidades para la configuración de red aislada para evitar la comunicación externa mediante el modo host-only. También gestiona el ciclo de vida completo de los estados de análisis mediante la gestión de estados basada en instantáneas, incluida la capacidad de limpiar o exportar instantáneas como archivos de dispositivo verificados.
Recursively deletes VM snapshots and their children to remove old analysis states and reclaim storage space.
dockerlabs is a collection of educational labs and technical tutorials designed to teach the fundamentals of containerization and microservice architecture. It provides instructional material and hands-on exercises covering image optimization, security training, infrastructure setup, and cluster orchestration. The project features specific courses and guides focused on reducing image size through multi-stage builds, securing workloads via vulnerability scanning and encrypted networks, and deploying multi-node clusters with high availability using Swarm orchestration. The materials cover a br
Covers attaching containers to specific network drivers to manage service communication and isolation.
jcode es un framework para desarrollar agentes de codificación de IA autónomos que automatizan tareas de desarrollo de software. Funciona como un orquestador de agentes, tiempo de ejecución de herramientas y motor de memoria semántica, permitiendo la creación de agentes que pueden modificar código, ejecutar pruebas e iterar sobre su propia funcionalidad. El proyecto se distingue por su uso de enjambres de agentes recursivos, donde una jerarquía de agentes colaboradores puede generar agentes hijos para descomponer tareas complejas. Implementa un sistema de memoria semántica que combina la recuperación basada en vectores con el mapeo de relaciones basado en grafos para mantener el contexto a través de las sesiones. Para gestionar el riesgo, el sistema utiliza una gobernanza de acciones escalonada que requiere aprobación humana para operaciones sensibles y aísla las actividades de los agentes dentro de worktrees de git separados. El framework incluye un kit de herramientas de automatización de navegador completo para interactuar con páginas web, extraer instantáneas del DOM y capturar capturas de pantalla. También implementa el Model Context Protocol para integrar herramientas y datos externos, y admite recarga en caliente de binarios para actualizar el servidor sin perder conexiones de red activas. El sistema proporciona una interfaz de línea de comandos para gestionar las memorias de los agentes e incluye herramientas de auditoría para rastrear el progreso del plan y visualizar la topología del enjambre de agentes.
Adapts the frequency of background agent cycles based on token consumption and provider rate limits.
Firejail is a Linux application sandbox and kernel security wrapper that isolates untrusted applications from the host system. It uses kernel namespaces and seccomp filters to restrict filesystem access, drop kernel capabilities, and limit the system attack surface. The project is distinguished by its use of predefined security profiles to automatically apply filesystem restrictions and syscall limits based on the executable being launched. It provides specialized isolation for portable packages such as AppImages and implements X11 display isolation via proxy servers to prevent keyboard loggi
Initializes a separate TCP/IP stack with its own routing table and firewall for traffic isolation.
n2n is a peer-to-peer VPN that creates an encrypted mesh network by establishing layer 2 overlay networks. It uses UDP tunneling to connect remote computers into a shared virtual local area network, allowing devices to communicate as if they were on the same physical Ethernet switch. The system utilizes a centralized signaling registry and federated coordination nodes to facilitate peer discovery and node registration. It implements NAT traversal through UDP hole punching and UPnP port mapping, while using supernode relay routing to ensure connectivity when symmetric NATs prevent direct peer-
Creates a virtual Ethernet segment allowing remote devices to communicate as if on the same physical switch.