For a configuration management tool for infrastructure automation, the first results are puppetlabs/puppet (Puppet is a comprehensive infrastructure-as-code tool that provides declarative configuration, idempotency, and multi-node orchestration, though it relies on a client-server agent architecture rather than being agentless), geerlingguy/ansible-for-devops (This repository provides a comprehensive collection of Ansible playbooks and infrastructure-as-code patterns that leverage agentless, declarative, and idempotent orchestration to manage multi-node server environments) and saltstack/salt (Salt is a powerful infrastructure configuration management and orchestration tool that supports declarative state enforcement and multi-node management, though it primarily relies on an agent-based architecture rather than being strictly agentless). getsops/sops and moghtech/komodo round out the shortlist. Compare the match explanations and check the project documentation against your requirements.
Automate and maintain system settings, infrastructure state, and software deployments across distributed computing environments.
Puppet is an infrastructure as code tool and configuration management framework used to automate the provisioning and state orchestration of server fleets. It functions as a declarative state orchestrator that manages server configurations and system settings to ensure consistency and reproducibility across a fleet of machines. The system utilizes a declarative state modeling approach and an idempotent execution engine to maintain configuration state and prevent environment drift. It employs resource-based abstraction and a client-server architecture to translate high-level specifications int
Puppet is a comprehensive infrastructure-as-code tool that provides declarative configuration, idempotency, and multi-node orchestration, though it relies on a client-server agent architecture rather than being agentless.
This project is an infrastructure as code framework and library of reusable playbooks designed for server configuration and DevOps workflow automation. It provides a Linux server configuration suite and specialized tools for provisioning multi-node Kubernetes clusters to support containerized applications. The library enables the automation of infrastructure tasks and the orchestration of multi-server workflows. It includes specific logic for deploying containerized workloads and managing application environments across different hosting platforms. The codebase covers broad capability areas
This repository provides a comprehensive collection of Ansible playbooks and infrastructure-as-code patterns that leverage agentless, declarative, and idempotent orchestration to manage multi-node server environments.
Salt is an infrastructure configuration management tool and orchestration framework designed for large-scale system administration. It functions as a remote execution engine that enables administrators to manage, provision, and enforce declarative states across distributed fleets of servers from a central control point. By utilizing a high-performance message bus, the platform allows for the simultaneous execution of administrative tasks and the maintenance of consistent software configurations across thousands of nodes. The system distinguishes itself through a flexible architecture that sup
Salt is a powerful infrastructure configuration management and orchestration tool that supports declarative state enforcement and multi-node management, though it primarily relies on an agent-based architecture rather than being strictly agentless.
This tool is a command-line utility designed to manage sensitive data by encrypting specific values within structured files such as YAML or JSON. By protecting only the sensitive portions of a file while leaving the structure intact, it ensures that configuration files remain readable for version control systems and automated workflows. The utility provides a secure development workflow by transparently decrypting files into memory for editing and automatically re-encrypting them upon saving, which prevents plaintext secrets from being written to the local disk. It supports a variety of encry
This tool is a specialized utility for encrypting sensitive data within configuration files, serving as a security building block rather than a comprehensive infrastructure configuration management platform.
Komodo is a remote server orchestrator and container deployment platform. It provides a centralized interface for managing multiple remote hosts through lightweight agents, coordinating Docker Swarm and Kubernetes clusters, and automating software delivery via integrated CI/CD pipelines. The system distinguishes itself with a TypeScript-based automation engine that executes typed scripts against the system API for complex operational workflows. It supports infrastructure-as-code through TOML-based declarative configuration synchronization and provides ephemeral build infrastructure that provi
Komodo provides a centralized platform for infrastructure orchestration and declarative configuration management, though it relies on lightweight agents rather than the agentless architecture often preferred in this category.
Pulumi is an infrastructure-as-code framework that enables the definition, deployment, and management of cloud resources using general-purpose programming languages. It functions as a cloud resource orchestrator that coordinates the lifecycle of heterogeneous infrastructure by executing code to construct dependency graphs and reconciling the desired state against actual cloud environments. The platform distinguishes itself through a language-host runtime bridge that allows developers to use standard programming languages to define infrastructure, rather than relying solely on domain-specific
Pulumi is a powerful infrastructure-as-code framework that enables declarative, multi-node resource orchestration and state management using general-purpose programming languages, though it differs from traditional configuration management tools by focusing on cloud resource provisioning rather than server-level software configuration.
Omarchy is a directory structure orchestrator that automates the provisioning and maintenance of file system hierarchies. By utilizing declarative configuration files, it allows users to define a desired workspace layout that serves as a single source of truth, ensuring that local development environments remain consistent and reproducible across distributed teams. The tool functions as an infrastructure-as-code utility for local environments, employing idempotent reconciliation to compare the current file system state against the defined configuration. It automatically applies only the neces
This tool focuses on managing local file system hierarchies and development workspace layouts rather than orchestrating infrastructure or software configuration across multiple remote servers.
CoreDNS is a modular domain name system server designed for cloud-native environments. It functions as a flexible DNS resolver and forwarder that manages network traffic by routing queries based on zone-based rules and authoritative data. The server is built to integrate with service discovery systems, enabling it to map service names to network addresses within containerized infrastructure. The project is defined by a plugin-based request pipeline that allows for the extension of server functionality through custom modules. These plugins can intercept, modify, or log network requests in real
CoreDNS is a specialized DNS server for service discovery and network routing rather than a general-purpose infrastructure configuration management tool for provisioning and managing server state.
Alloy is a clustered telemetry collector and observability data pipeline that functions as an OpenTelemetry collector distribution. It acts as a declarative configuration engine for collecting and routing metrics, logs, traces, and profiles from various sources to monitoring backends. The system distinguishes itself through a distributed architecture that uses consistent hashing to balance scraping targets and collection workloads across multiple nodes. It manages fleet-wide settings via remote configuration fetching and a modular system for importing reusable pipeline patterns. As a Kubernet
This is a telemetry and observability pipeline tool designed for data collection and routing, rather than a general-purpose infrastructure configuration management system for provisioning and managing server software.
Kubernetes is a distributed container orchestration platform that automates the deployment, scaling, and management of containerized applications across clusters of computing nodes. It functions as a declarative infrastructure controller, utilizing a control loop architecture that continuously monitors the current system state against user-defined configurations to ensure desired operational outcomes. The system relies on a centralized API-driven interface and a replicated key-value store to maintain a consistent source of truth for all cluster objects. The platform distinguishes itself throu
While this is a powerful tool for managing containerized infrastructure and application state, it is a container orchestrator rather than a general-purpose configuration management tool for provisioning and configuring underlying server operating systems.
Kestra is a declarative workflow orchestrator designed to manage complex task dependencies and automated processes through versioned configuration files. It functions as a distributed platform that decouples task scheduling from execution by offloading computational workloads to a fleet of worker nodes. The system uses a reactive, event-driven engine to initiate workflows automatically in response to external signals, webhooks, schedules, or file system changes. The platform distinguishes itself through a modular plugin architecture that allows for the integration of custom tasks and external
This is a workflow and data orchestration platform designed for managing task dependencies and pipelines, rather than a tool for server-level infrastructure provisioning and configuration management.
K3s is a lightweight Kubernetes distribution designed for resource-constrained environments, edge computing, and simplified deployment across diverse hardware architectures. It functions as a container orchestration engine that automates the deployment, scaling, and management of containerized applications. By bundling all necessary control plane components and dependencies into a single binary, it minimizes the system footprint and streamlines the installation process. The project distinguishes itself through a flexible architecture that supports both high-availability clustering and minimal
This is a lightweight Kubernetes distribution for container orchestration rather than a general-purpose infrastructure configuration management tool for provisioning and managing server-level software and OS configurations.
| Repository | Stars | Language | License | Last push |
|---|---|---|---|---|
| puppetlabs/puppet | 7.9K | Ruby | Apache-2.0 | |
| geerlingguy/ansible-for-devops | 9.8K | Python | MIT | |
| 15.2K |
| Python |
| apache-2.0 |
| getsops/sops | 22.1K | Go | MPL-2.0 |
| moghtech/komodo | 10.3K | Rust | gpl-3.0 |
| pulumi/pulumi | 24.8K | Go | apache-2.0 |
| basecamp/omarchy | 20.3K | Shell | mit |
| coredns/coredns | 14.1K | Go | Apache-2.0 |
| grafana/alloy | 2.9K | Go | apache-2.0 |
| kubernetes/kubernetes | 123.2K | Go | Apache-2.0 |