Objectives

ื‘ืžืขื‘ื“ื” ื–ื• ื ื‘ื—ืŸ ืžื’ื‘ืœื” ื—ืฉื•ื‘ื” ืฉืœ Network Policies ื‘-Kubernetes.

ื”ืžืกืงื ื” ื”ืžืจื›ื–ื™ืช:

Network Policies ืคื•ืขืœื•ืช ืจืง ื‘ืชื•ืš Namespace ืื—ื“.

ื›ืœื•ืžืจ:

ื ื‘ื“ื•ืง ื–ืืช ื‘ืคื•ืขืœ ื‘ืืžืฆืขื•ืช ืคื•ื“ื™ื ื‘ืฉื ื™ namespaces ืฉื•ื ื™ื.


ื—ืœืง 1 โ€“ ื™ืฆื™ืจืช Policy ืฉื—ื•ืกืžืช ืืช ื›ืœ ื”ืชืขื‘ื•ืจื”

ื ืฉืชืžืฉ ืฉื•ื‘ ื‘-policy:

deny-all

ื ื—ื™ืœ ืื•ืชื”.

kubectl apply -f policies/deny-all.yaml

Policy ื–ื• ื—ื•ืกืžืช:

Ingress
Egress

ืื‘ืœ ื”ื™ื ื—ืœื” ืจืง ืขืœ ื”-default namespace.


ื—ืœืง 2 โ€“ ื™ืฆื™ืจืช Namespace ื—ื“ืฉ