Add-on
Secure Your Amazon EKS Clusters
Chainguard EKS Add-ons deliver hardened, minimal, and continuously maintained container images for the most critical components of Amazon Elastic Kubernetes Service (EKS).

FIPS Images for Core EKS Add-ons
Chainguard provides secure, production-ready images for the six widely deployed EKS add-ons for AWS’s largest and most security-sensitive customers.
|
Kube-proxy for Amazon EKS |
CoreDNS for Amazon EKS |
Amazon VPC CNI |
|
Amazon EBS CSI Driver |
Amazon ELB Controller |
Amazon EFS CSI Driver |
FIPS-validated images for AWS EKS infrastructure
Chainguard AWS Add-ons are designed specifically for modern EKS security requirements:
- Minimal attack surface with no unnecessary packages
- Continuously rebuilt to eliminate known CVEs
- FIPS-capable variants available for regulated workloads
- Signed and verifiable for supply chain integrity
This results in fewer kube-system findings, faster audits, and less operational drag—reducing security toil and letting EKS platform teams focus on reliability, scalability, and enabling developer velocity.