UNCLASSIFIED

egress-gateway-external.yaml 479 Bytes
Newer Older
jtcarnes's avatar
jtcarnes committed
1 2 3 4
{{- if .Values.networkPolicies.enabled }}
apiVersion: networking.k8s.io/v1
kind: NetworkPolicy
metadata:
Micah Nagel's avatar
Micah Nagel committed
5
  # Note: This is not used currently since we don't have an egress gateway
Micah Nagel's avatar
Micah Nagel committed
6
  name: egress-gateway-traffic-to-external
jtcarnes's avatar
jtcarnes committed
7 8 9
  namespace: "{{ .Release.Namespace }}"
spec:
  egress:
Micah Nagel's avatar
modify  
Micah Nagel committed
10 11 12 13 14
    - to:
      - ipBlock:
          cidr: 0.0.0.0/0
          except:
          - 169.254.169.254/32
jtcarnes's avatar
jtcarnes committed
15 16
  podSelector:
    matchLabels:
Joshua Carnes's avatar
Joshua Carnes committed
17
      istio: egressgateway
jtcarnes's avatar
jtcarnes committed
18 19
  policyTypes:
    - Egress
Joshua Carnes's avatar
Joshua Carnes committed
20
{{- end }}