mirror of
https://github.com/microsoft/regorus.git
synced 2026-08-05 02:16:11 +00:00
d561531613
This commit introduces a complete multi-threaded evaluation benchmark suite for both Rust and C# implementations of Regorus. - Implemented engine evaluation benchmark with input and engine cloning strategies - Implemented compiled policy evaluation benchmark with input cloning and shared compiled policy strategies. - Created EngineEvaluationBenchmark.cs and CompiledPolicyEvaluationBenchmark.cs with time-based execution (3s warmup + 3s evaluation) - Implemented configuration options matching Rust implementation (useClonedEngines, useSharedPolicies parameters) - Created markdown analysis documentation with cross-platform performance analysis - C# seems to achieve 58-89% of Rust performance on test machine. Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com>
21 lines
676 B
Rego
21 lines
676 B
Rego
package bench
|
|
|
|
default allow := false
|
|
|
|
# Azure VM deployment policy
|
|
allowed_vm_sizes := [
|
|
"Standard_B1s", "Standard_B2s", "Standard_B4ms",
|
|
"Standard_D2s_v3", "Standard_D4s_v3", "Standard_F2s_v2"
|
|
]
|
|
|
|
allowed_regions := ["eastus", "westus2", "northeurope", "southeastasia"]
|
|
|
|
allow if {
|
|
input.operation == "Microsoft.Compute/virtualMachines/write"
|
|
input.resource.properties.hardwareProfile.vmSize in allowed_vm_sizes
|
|
input.resource.location in allowed_regions
|
|
input.resource.properties.osProfile.adminPassword == null # Require SSH keys
|
|
count(input.resource.tags) > 0 # Must have tags
|
|
input.resource.tags.environment in ["dev", "test", "prod"]
|
|
}
|