Uploaded image for project: 'OpenShift Autoscaling'
  1. OpenShift Autoscaling
  2. AUTOSCALE-369

Create network policies for Cluster Autoscaler

XMLWordPrintable

    • Icon: Story Story
    • Resolution: Unresolved
    • Icon: Normal Normal
    • None
    • None
    • None
    • None
    • Product / Portfolio Work
    • 3
    • False
    • Hide

      None

      Show
      None
    • False
    • AUTOSCALE - Sprint 279

      As an OpenShift cluster admin, I want to feel confident that only permitted network traffic is sent or received by Cluster Autoscaler operator and operand. Please add policies as follows and make sure they are properly installed when CA is installed::

      Operator:

      • CVO-installed policy
      • Ingress for metrics (doc suggests allow all – investigate allow all vs from monitoring namespace)
      • Egress to API server

      Operand:

      • (CVO or operator)-installed policy
      • Ingress from API server (to webhook)
      • Ingress for metrics (doc suggests allow all – investigate allow all vs from monitoring namespace)
      • Egress to API server

              joelsmith.redhat Joel Smith
              joelsmith.redhat Joel Smith
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated: