Skip to content

Safeguard Network Policies Schema

Note

This is auto-generated documentation from a JSON schema that is under construction, this will improve over time.

Return to the root config schema

https://raw.githubusercontent.com/elastisys/compliantkubernetes-apps/main/config/schemas/config.yaml#/properties/opa/properties/networkPolicies

Configure constraint to only allow Pods targeted by NetworkPolicies.

Note

See the dev docs for context.

Abstract Extensible Status Identifiable Custom Properties Additional Properties Access Restrictions Defined In
Can be instantiated No Unknown status No Forbidden Forbidden none config/schemas/config.yaml*

TYPE:

object (Safeguard Network Policies)

PROPERTIES:

Property Type Required Nullable Defined by
enabled boolean Optional cannot be null Welkin Apps Config
enforcement string Optional cannot be null Welkin Apps Config

enabled

enabled

TYPE:

boolean (Safeguard Network Policies Enabled)

DEFAULTS:

The default value is:

true

enforcement

enforcement

TYPE:

string (Safeguard Network Policies Enforcement)

CONSTRAINTS:

enum: the value of this property must be equal to one of the following values:

Value Explanation
"deny" Deny actions violating the constraint.
"warn" Warn actions violating the constraint.
"dryrun" Dryrun actions violating the constraint.

DEFAULTS:

The default value is:

"warn"

Return to the root config schema


Generated Sun Nov 17 03:51:36 UTC 2024 from elastisys/compliantkubernetes-apps@main