From e1f2a3cf785285577ee3d480fa1689dcf72301e5 Mon Sep 17 00:00:00 2001 From: Meg Heisler Date: Tue, 7 May 2019 09:51:47 -0500 Subject: [PATCH] Fix broken network policy check/gate This adds a basic egress policy to the charts run by the network-policy check. A change was recently merged requiring the eggress tag to be in the chart but did not add it, this addresses that Change-Id: I60669c9351db7854cba8c69723eb783a966d2a56 --- elasticsearch/values.yaml | 4 ++++ fluent-logging/values.yaml | 4 ++++ grafana/values.yaml | 7 +++++++ kibana/values.yaml | 2 ++ ldap/values.yaml | 2 ++ mariadb/values.yaml | 2 ++ nagios/values.yaml | 2 ++ prometheus/values.yaml | 2 ++ 8 files changed, 25 insertions(+) diff --git a/elasticsearch/values.yaml b/elasticsearch/values.yaml index cbb5dd401..3f3861ccb 100644 --- a/elasticsearch/values.yaml +++ b/elasticsearch/values.yaml @@ -315,9 +315,13 @@ network_policy: elasticsearch: ingress: - {} + egress: + - {} prometheus-elasticsearch-exporter: ingress: - {} + egress: + - {} secrets: rgw: diff --git a/fluent-logging/values.yaml b/fluent-logging/values.yaml index 74b74d0a2..bdabe8a6c 100644 --- a/fluent-logging/values.yaml +++ b/fluent-logging/values.yaml @@ -574,9 +574,13 @@ network_policy: prometheus-fluentd-exporter: ingress: - {} + egress: + - {} fluentd: ingress: - {} + egress: + - {} pod: security_context: diff --git a/grafana/values.yaml b/grafana/values.yaml index 274740940..1e0a2493f 100644 --- a/grafana/values.yaml +++ b/grafana/values.yaml @@ -308,6 +308,13 @@ network: annotations: nginx.ingress.kubernetes.io/rewrite-target: / +network_policy: + grafana: + ingress: + - {} + egress: + - {} + secrets: oslo_db: admin: grafana-db-admin diff --git a/kibana/values.yaml b/kibana/values.yaml index 69ba2b169..83015027e 100644 --- a/kibana/values.yaml +++ b/kibana/values.yaml @@ -105,6 +105,8 @@ network_policy: kibana: ingress: - {} + egress: + - {} secrets: elasticsearch: diff --git a/ldap/values.yaml b/ldap/values.yaml index 716b31852..0397ef7c9 100644 --- a/ldap/values.yaml +++ b/ldap/values.yaml @@ -151,6 +151,8 @@ network_policy: ldap: ingress: - {} + egress: + - {} data: sample: | diff --git a/mariadb/values.yaml b/mariadb/values.yaml index e24b5db0a..3efc02a6a 100644 --- a/mariadb/values.yaml +++ b/mariadb/values.yaml @@ -375,6 +375,8 @@ network_policy: mariadb: ingress: - {} + egress: + - {} manifests: configmap_bin: true diff --git a/nagios/values.yaml b/nagios/values.yaml index 553d809b2..ea6f65ba6 100644 --- a/nagios/values.yaml +++ b/nagios/values.yaml @@ -191,6 +191,8 @@ network_policy: nagios: ingress: - {} + egress: + - {} pod: security_context: diff --git a/prometheus/values.yaml b/prometheus/values.yaml index 513569b6b..05315cb80 100644 --- a/prometheus/values.yaml +++ b/prometheus/values.yaml @@ -231,6 +231,8 @@ network_policy: prometheus: ingress: - {} + egress: + - {} secrets: tls: