Uploaded image for project: 'OpenShift Request For Enhancement'
  1. OpenShift Request For Enhancement
  2. RFE-7497

Add tenancy support to (B)AdminNetworkPolicy

XMLWordPrintable

    • Icon: Feature Request Feature Request
    • Resolution: Unresolved
    • Icon: Undefined Undefined
    • None
    • 4.18, 4.17
    • Network - Core
    • None
    • Product / Portfolio Work
    • None
    • False
    • Hide

      None

      Show
      None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None

      1. Proposed title of this feature request

      Add tenancy support to (B)AdminNetworkPolicy

      2. What is the nature and description of the request?

      As a cluster admin, I want to setup an overridable deny-all policy to protect namespaces by default.
      At the same time I want to build tenants in my cluster and allow connections inside one tenant by default.

      3. Why does the customer need this? (List the business requirements here)

      Simplify the network policy management. Currently, it's one Tier2 NetworkPolicy per namespace, most of the use case can be handled with ANP except this one.

      Upstream ANP tracker https://github.com/kubernetes-sigs/network-policy-api/issues/122

              mcurry@redhat.com Marc Curry
              rh-ee-mmayeras Mickael Mayeras
              None
              Votes:
              1 Vote for this issue
              Watchers:
              3 Start watching this issue

                Created:
                Updated:
                None
                None