Skip to content

Commit

Permalink
allow all
Browse files Browse the repository at this point in the history
Signed-off-by: Daniil Antoshin <[email protected]>
  • Loading branch information
danilrwx committed Jan 30, 2025
1 parent 4c9b8b4 commit b88da7c
Showing 1 changed file with 2 additions and 45 deletions.
Original file line number Diff line number Diff line change
Expand Up @@ -26,8 +26,6 @@ import (
netv1 "k8s.io/api/networking/v1"
metav1 "k8s.io/apimachinery/pkg/apis/meta/v1"
"k8s.io/apimachinery/pkg/types"
"k8s.io/apimachinery/pkg/util/intstr"
"k8s.io/utils/ptr"
"sigs.k8s.io/controller-runtime/pkg/client"

"github.com/deckhouse/virtualization-controller/pkg/common"
Expand Down Expand Up @@ -190,49 +188,8 @@ func (imp *Importer) makeNetworkPolicySpec(pod *corev1.Pod) (*netv1.NetworkPolic
PodSelector: metav1.LabelSelector{
MatchLabels: pod.Labels,
},
Egress: []netv1.NetworkPolicyEgressRule{
{
To: []netv1.NetworkPolicyPeer{
{
NamespaceSelector: &metav1.LabelSelector{
MatchLabels: map[string]string{"kubernetes.io/metadata.name": "d8-virtualization"},
},
},
},
Ports: []netv1.NetworkPolicyPort{},
},
{
To: []netv1.NetworkPolicyPeer{
{
NamespaceSelector: &metav1.LabelSelector{
MatchLabels: map[string]string{"kubernetes.io/metadata.name": "kube-system"},
},
},
},
Ports: []netv1.NetworkPolicyPort{
{
Port: &intstr.IntOrString{Type: intstr.Int, IntVal: 53},
Protocol: ptr.To(corev1.ProtocolUDP),
},
},
},
},
Ingress: []netv1.NetworkPolicyIngressRule{
{
From: []netv1.NetworkPolicyPeer{
{
NamespaceSelector: &metav1.LabelSelector{
MatchLabels: map[string]string{"kubernetes.io/metadata.name": "d8-virtualization"},
},
},
},
Ports: []netv1.NetworkPolicyPort{},
},
},
PolicyTypes: []netv1.PolicyType{
netv1.PolicyTypeEgress,
netv1.PolicyTypeIngress,
},
Egress: []netv1.NetworkPolicyEgressRule{},
PolicyTypes: []netv1.PolicyType{netv1.PolicyTypeEgress},
},
}

Expand Down

0 comments on commit b88da7c

Please sign in to comment.