proposal to add an example for "allow egress only to public addresses".
In our use case, where we execute some user-configured rest calls, the service running those should not have access to internal Kubernetes endpoints.
Took me a while of searching to end up with this policy, given that I'm not that knowledgeable about this topic.
I think we can spare other people that, by including this as an example here (since this repo is linked in the official docs)
And maybe someone notices a flaw in this.
proposal to add an example for "allow egress only to public addresses".
In our use case, where we execute some user-configured rest calls, the service running those should not have access to internal Kubernetes endpoints. Took me a while of searching to end up with this policy, given that I'm not that knowledgeable about this topic. I think we can spare other people that, by including this as an example here (since this repo is linked in the official docs) And maybe someone notices a flaw in this.
Allows...