From 0e2bdbb47d858d27ba6a311f7469e721ea6fe132 Mon Sep 17 00:00:00 2001 From: diegoitaliait Date: Sun, 25 Feb 2024 19:54:42 +0100 Subject: [PATCH] added network policy --- resources/broken-rbac/network-policy.yaml | 11 +++++++++++ resources/broken-rbac/service-account.yaml | 5 ----- 2 files changed, 11 insertions(+), 5 deletions(-) create mode 100644 resources/broken-rbac/network-policy.yaml delete mode 100644 resources/broken-rbac/service-account.yaml diff --git a/resources/broken-rbac/network-policy.yaml b/resources/broken-rbac/network-policy.yaml new file mode 100644 index 0000000..24db8f6 --- /dev/null +++ b/resources/broken-rbac/network-policy.yaml @@ -0,0 +1,11 @@ +--- +apiVersion: networking.k8s.io/v1 +kind: NetworkPolicy +metadata: + name: default-deny-all + namespace: diego +spec: + podSelector: {} + policyTypes: + - Ingress + - Egress diff --git a/resources/broken-rbac/service-account.yaml b/resources/broken-rbac/service-account.yaml deleted file mode 100644 index 5b1512e..0000000 --- a/resources/broken-rbac/service-account.yaml +++ /dev/null @@ -1,5 +0,0 @@ -apiVersion: v1 -kind: ServiceAccount -metadata: - name: service-account-pod-read - namespace: diego