Rancher Government Solutions Launches Carbide
March 01, 2023

Rancher Government Solutions launched Rancher Government Carbide, a supply chain security solution, in response to increasing threats to the nation’s software supply chain.

Carbide simplifies Kubernetes security management by providing a better, more standardized way for users to verify and validate that their software is safe and secure.

Rancher Government Carbide secures the software supply chain by verifying provenance back to a trusted entity using a centralized secure container registry for end users, validated by a secured signing key. In addition, Carbide’s pipeline utilizes tools for vulnerability scanning and generating software bills of materials (SBOMs). Furthermore, Carbide supports a Kubernetes management platform and distribution with Security Technical Implementation Guides (STIGs) validated and published by DISA (Rancher MCM 2.6 & RKE2).

“At Rancher Government Solutions, we know securing the software supply chain is mission critical to our federal customers, particularly given the increased frequency of attacks,” said Brandon Gulla, Vice President and Chief Technology Officer at Rancher Government Solutions. “We built Carbide to provide security validation capabilities directly to our customers and give them a clear, easy way to confidently answer difficult questions about the security posture of their Kubernetes environments.”

STIGATRON is a tool within Carbide built to validate that downstream clusters are secure. By automatically scanning downstream clusters from the centralized Rancher Manager and comparing them to the STIG cluster, STIGATRON alleviates the obstacles system administrators face in the validation process, enabling automated compliance with the security standards of the federal government.

“Given that software is critical to daily operations, the need to balance security with innovation is essential,” said Lynne Chamberlain, President and CEO of Rancher Government Solutions. "This is why our team developed Rancher Government Carbide: to simplify Kubernetes management by providing a more standardized way for users to verify and validate software and support federal security compliance requirements.”

Rancher Government Carbide also includes airgap documentation and edge capabilities. Carbide is an add-on support service to the existing Rancher products suite, designed to assist supported customers with overcoming the security challenges associated with application modernization, containers, and Kubernetes.

Carbide is included at no extra cost and can be easily accessed by all current RGS support customers. Rancher users interested in optimizing their experience using Rancher software and ensuring security can reach out to the RGS team at https://ranchergovernment.com/carbide. In addition, U.S. government and DoD IT teams seeking to address the operational and security challenges of managing multiple Kubernetes clusters at scale can visit www.ranchergovernment.com for more information.

Share this

Industry News

January 23, 2025

Progress announced the launch of Progress Data Cloud, a managed Data Platform as a Service designed to simplify enterprise data and artificial intelligence (AI) operations in the cloud.

January 23, 2025

Sonar announced the release of its latest Long-Term Active (LTA) version, SonarQube Server 2025 Release 1 (2025.1).

January 23, 2025

Idera announced the launch of Sembi, a multi-brand entity created to unify its premier software quality and security solutions under a single umbrella.

January 22, 2025

Postman announced the Postman AI Agent Builder, a suite empowering developers to quickly design, test, and deploy intelligent agents by combining LLMs, APIs, and workflows into a unified solution.

January 22, 2025

The Cloud Native Computing Foundation® (CNCF®), which builds sustainable ecosystems for cloud native software, announced the graduation of CubeFS.

January 21, 2025

BrowserStack and Bitrise announced a strategic partnership to revolutionize mobile app quality assurance.

January 21, 2025

Render raised $80M in Series C funding.

January 16, 2025

Mendix, a Siemens business, announced the general availability of Mendix 10.18.

January 16, 2025

Red Hat announced the general availability of Red Hat OpenShift Virtualization Engine, a new edition of Red Hat OpenShift that provides a dedicated way for organizations to access the proven virtualization functionality already available within Red Hat OpenShift.

January 16, 2025

Contrast Security announced the release of Application Vulnerability Monitoring (AVM), a new capability of Application Detection and Response (ADR).

January 15, 2025

Red Hat announced the general availability of Red Hat Connectivity Link, a hybrid multicloud application connectivity solution that provides a modern approach to connecting disparate applications and infrastructure.

January 15, 2025

Appfire announced 7pace Timetracker for Jira is live in the Atlassian Marketplace.

January 14, 2025

SmartBear announced the availability of SmartBear API Hub featuring HaloAI, an advanced AI-driven capability being introduced across SmartBear's product portfolio, and SmartBear Insight Hub.

January 14, 2025

Azul announced that the integrated risk management practices for its OpenJDK solutions fully support the stability, resilience and integrity requirements in meeting the European Union’s Digital Operational Resilience Act (DORA) provisions.

January 14, 2025

OpsVerse announced a significantly enhanced DevOps copilot, Aiden 2.0.