Files
home-cluster-ops/kubernetes/rpi5-cluster/apps/cilium/networkpolicies/egress-world.yaml
2024-06-09 12:58:27 +10:00

16 lines
340 B
YAML

apiVersion: cilium.io/v2
kind: CiliumClusterwideNetworkPolicy
metadata:
name: egress-world
spec:
endpointSelector:
matchLabels:
rpi5.cluster.policy/egress-world: "true"
egress:
- toCIDRSet:
- cidr: 0.0.0.0/0
except:
- 192.168.1.0/24
- 192.168.2.0/24
- 100.64.0.0/10