Skip to main content

Set up Package Firewall

Set up and configure Package Firewall to protect your development pipeline from harmful open-source packages, vulnerabilities, malware, and policy violations.

To set up Package Firewall, complete the following tasks:

  • Configure required permissions: understand the different Package Firewall roles and how to assign users the appropriate level of access within your organization.

  • Create and test a firewall: create a new firewall instance, validate its functionality using safe demo packages across multiple ecosystems, and learn how to remove firewalls when they're no longer needed.

  • Manage firewall policies: configure default policies, create custom policies by using the Open Policy Agent (OPA) framework with Rego, and manage the policy lifecycle in your firewalls.

  • Add firewall exceptions: grant exceptions for packages that violate policies or permit incomplete package versions when necessary for your development workflow.