diff --git a/values/atlantis/manifests/network/allow-egress-openfga.yaml b/values/atlantis/manifests/network/allow-egress-openfga.yaml new file mode 100644 index 00000000..8ae99615 --- /dev/null +++ b/values/atlantis/manifests/network/allow-egress-openfga.yaml @@ -0,0 +1,15 @@ +{{- if .Values.clusterConfig.cilium.enabled }} +apiVersion: cilium.io/v2 +kind: CiliumNetworkPolicy +metadata: + name: allow-egress-openfga + namespace: {{ .Release.Namespace }} +spec: + egress: + - toEndpoints: + - matchLabels: + k8s:io.kubernetes.pod.namespace: openfga + endpointSelector: + matchLabels: + app.kubernetes.io/name: atlantis +{{- end }}