Uploaded image for project: 'OpenShift Hosted Control Plane'
  1. OpenShift Hosted Control Plane
  2. HOSTEDCP-829

Block inter-namespace egress from HCP kube-apiserver

XMLWordPrintable

    • Icon: Story Story
    • Resolution: Done
    • Icon: Critical Critical
    • None
    • None
    • None
    • False
    • None
    • False
    • 0
    • 0
    • 0

      Prior work in HOSTEDCP-645 was not able to block traffic using NetworkPolicy.  The requirement we have is simply:

      • it is not possible for traffic originating from one Hosted Cluster to access another Hosted Cluster unless a network path exists that is not managed by Red Hat (i.e. public internet or customer private network).

            sjenning Seth Jennings
            nmalik-srej Naveen Malik
            Jie Zhao Jie Zhao
            Votes:
            0 Vote for this issue
            Watchers:
            11 Start watching this issue

              Created:
              Updated:
              Resolved: