Skip to content

Instantly share code, notes, and snippets.

@yogendra
Last active June 18, 2020 12:57
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save yogendra/6c24eb3d3cf56d768429402c2888ec1d to your computer and use it in GitHub Desktop.
Save yogendra/6c24eb3d3cf56d768429402c2888ec1d to your computer and use it in GitHub Desktop.
K8s Objects
apiVersion: networking.k8s.io/v1
kind: NetworkPolicy
metadata:
name: allow-apps-egress-ent-svc
spec:
podSelector: {}
policyTypes:
- Egress
egress:
- to:
- ipBlock:
cidr: image-registry-ip-cidr
ports:
- protocol: TCP
port: 443
- to:
- ipBlock:
cidr: ldap-ip-cidr
ports:
- protocol: TCP
port: 389
- to:
- ipBlock:
cidr: twistlock-ip-cidr
ports:
- protocol: TCP
port: 8084
- to:
- ipBlock:
cidr: dns1-ip-cidr
- ipBlock:
cidr: dns2-ip-cidr
- ipBlock:
cidr: dns3-ip-cidr
ports:
- protocol: TCP
port: 53
- protocol: UDP
port: 53
apiVersion: networking.k8s.io/v1
kind: NetworkPolicy
metadata:
name: allow-egress-ent-svc
namespace: kube-system
spec:
podSelector: {}
policyTypes:
- Egress
egress:
- to:
- ipBlock:
cidr: pks-controller-ip
ports:
- protocol: TCP
port: 24224
- to:
- ipBlock:
cidr: dns1-ip-cidr
- ipBlock:
cidr: dns2-ip-cidr
- ipBlock:
cidr: dns3-ip-cidr
ports:
- protocol: TCP
port: 53
- protocol: UDP
port: 53
apiVersion: networking.k8s.io/v1
kind: NetworkPolicy
metadata:
name: allow-egress-ent-svc
namespace: pks-system
spec:
podSelector: {}
policyTypes:
- Egress
egress:
- to:
- ipBlock:
cidr: pks-controller-ip
ports:
- protocol: TCP
port: 24224
- to:
- ipBlock:
cidr: dns1-ip-cidr
- ipBlock:
cidr: dns2-ip-cidr
- ipBlock:
cidr: dns3-ip-cidr
ports:
- protocol: TCP
port: 53
- protocol: UDP
port: 53
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment