-
Story
-
Resolution: Unresolved
-
Normal
-
None
-
None
-
None
Create an enhancement proposal for adding network policies for both external-secrets operator and operand.
The NP required for the operators should be part of the bundle and the operand specific should be part of static manifests.
Operator should have both deny all and allow specific NP created.
Operand should just have deny all policy created and the allow rules requires analysis.
Acceptance Criteria:
- Enhancement proposal adheres to https://github.com/openshift/enhancements/blob/master/guidelines/enhancement_template.md
- Should be created in https://github.com/openshift/enhancements/tree/master/enhancements/external-secrets-operator
References:
- cert-manager EP: https://github.com/openshift/enhancements/pull/1816
- OpenShift operators Enhancement Proposal: https://github.com/openshift/enhancements/pull/1720
- OpenShift NetworkPolicy Brief Doc: https://docs.google.com/document/d/1z9MEZAIZNpdPZV_NWVLGM1tMPFhgwW4q6BpJSgbOdJg/edit?tab=t.0
- OpenShift NetworkPolicy Suggestions Doc: https://docs.google.com/document/d/1CDoGSRd-h8VT4PMrK_83Ro0YzYPjORbkxtfTJU1sN6Q/edit?tab=t.0
- https://docs.redhat.com/en/documentation/openshift_container_platform/4.5/html/networking/network-policy#creating-network-policy