Files
manifests/values/system/ekman/kyverno/add-ingress-whitelist.yaml
T
2025-10-07 17:42:08 +02:00

21 lines
497 B
YAML

apiVersion: kyverno.io/v1
kind: ClusterPolicy
metadata:
name: add-ingress-whitelist
spec:
background: true
generateExisting: true
rules:
- name: set-whitelist-internal
mutate:
patchStrategicMerge:
metadata:
annotations:
nginx.ingress.kubernetes.io/whitelist-source-range: 10.0.0.0/8,172.16.0.0/12,192.168.0.0/16,100.64.0.0/12
match:
resources:
kinds:
- Ingress
annotations:
oceanbox.io/expose: internal