nctl

CLI for scanning Kubernetes manifests, Terraform, and more

nctl - the Nirmata CLI

nctl the Nirmata Controller Command Line Interface (CLI) is a powerful tool designed to simplify and streamline the security posture of your clusters and applications. With its intuitive and comprehensive set of commands, the CLI offers a unified approach to shifting left security by providing CI/CD integrations and the ability to perform internal and external scans for comprehensive vulnerability assessments.

Key Features and Benefits:

  1. Shift-Left Security: Integrating nctl into your CI/CD, GitOps, and IaC pipelines enables proactive enforcement of policies and enables self-service remediation for developers. With nctl you can scan Kubernetes manifests, Terraform plans, Dockerfiles, and any JSON-formatted resource to shift-left security and prevent misconfigurations prior to deployment.
  2. Simplified Kubernetes Cluster Scanning: nctl allows you to scan your Kubernetes clusters for common misconfigurations, and ensure compliance, without having to install an policy engine in each cluster. This allows you to easily identify critical issues and have your teams address them, before you enable cluster admission controls for defense-in-depth strategy and to block misconfigurations.
  3. Unified Governance with NCH: nctl seamlessly integrates with Nirmata Control Hub (NCH) so you can enable a unified governance layer across clusters, pipeline and cloud. You can publish and share policy reports and use centrally managed policy sets and exceptions.
  4. AI Platform Assistant: nctl ai is an AI-powered personal agent that runs on your workstation and helps you scan clusters, generate Kyverno policies, troubleshoot issues, and manage compliance — all from your terminal. See the AI Platform Assistant documentation to get started.

Quick Start

Getting started with nctl, the Nirmata CLI

Installation

Installing nctl, the Nirmata CLI

Scanning Resources

Overview of nctl scan commands for Kubernetes clusters, Terraform, Dockerfiles, Helm charts, and more

Cluster Onboarding

Cluster Onboarding

Kyverno Operator Management

Kyverno Operator Management

Release Notes

NCTL Release Notes

Commands