apiVersion: cilium.io/v2 kind: CiliumNetworkPolicy metadata: name: allow-external-idp namespace: idp spec: egress: - toFQDNs: - matchName: login.microsoftonline.com - matchName: graph.microsoft.com endpointSelector: matchExpressions: - key: app.kubernetes.io/namecerbos operator: In values: [ cerbos, dex ]