Uploaded image for project: 'OpenShift Request For Enhancement'
  1. OpenShift Request For Enhancement
  2. RFE-3743

"Allow-From-Router" NetworkPolicy for all configured IngressController


    • False
    • None
    • False
    • Not Selected

      1. Proposed title of this feature request
      "Allow-From-Router" NetworkPolicy for all configured IngressController

      2. What is the nature and description of the request?
      In RFE-1354, the enhancement "Allow-From-Router" NetworkPolicy was implemented but despite the Plan, the functionality was restricted to the default IngressController only, as per Allow from router support in CNO. For use-cases where multiple IngressController are being in use, this exposes some challenges as depending how the default IngressController is configured, either policy-group=ingress or policy-group=host-network needs to be used/configured in NetworkPolicy

      3. Why does the customer need this? (List the business requirements here)
      Customers with multiple IngressController are required to implemented additional functionality/logic to have traffic working, depending on the configuration of the default IngressController respectively based on the configuration of the additional IngressController. Given this current situatuon, it's requested that the implementation from RFE-1354 is extended to consider additional IngressController as well or at least provide additional functionality to help customers deal with policy-group=ingress respectively policy-group=host-network.

      4. List any affected packages or components.
      Cluster Network Operator
      Cluster Ingress Operator

              mcurry@redhat.com Marc Curry
              rhn-support-sreber Simon Reber
              0 Vote for this issue
              3 Start watching this issue
