Skip to content

Commit 76b22be

Browse files
committed
OTA-1531: Add a default-deny network policy for CVO namespace
1 parent db8190f commit 76b22be

File tree

1 file changed

+12
-0
lines changed

1 file changed

+12
-0
lines changed
Lines changed: 12 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,12 @@
1+
apiVersion: networking.k8s.io/v1
2+
kind: NetworkPolicy
3+
metadata:
4+
# This NetworkPolicy is used to deny all ingress and egress traffic by default in this namespace,
5+
# serving as a baseline. Individual additional policies allow specific desirable traffic.
6+
name: default-deny
7+
namespace: openshift-cluster-version
8+
spec:
9+
podSelector: {}
10+
policyTypes:
11+
- Ingress
12+
- Egress

0 commit comments

Comments
 (0)