-
Notifications
You must be signed in to change notification settings - Fork 373
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
To Support Antrea Host Network Policy #5348
Comments
This is a duplicate of #4213, so please close one of them |
@antoninbas , |
@rajnkamr it seems the use cases mentioned in the issue is not very different from 4213. "To handle non IP Packet in datapath" doesn't seem a valid requirement, I don't know in which case users want to use NetworkPolicy to manage non IP packets. |
@tnqn Although this issue is created based on #4213 proposal, we might not want to cover all use-cases under 4213, |
This issue is stale because it has been open 90 days with no activity. Remove stale label or comment, or this will be closed in 90 days |
Describe the problem/challenge you have
Antrea Cluster network policy can be only applied to pod level,
Scope of the work involves
1.Support this feature on Node Interface in Encap mode by introducing new configuration toggle.
2.To handle non IP Packet in datapath
3.To handle IP Packet in datapath
4.To allow management connection to host when network policy is enforced
Describe the solution you'd like
This feature proposes to apply Antrea Cluster Network Policy to K8s Nodes. User can apply ACNP on K8s Node by using nodeSelector in appliedTo field and provide matching Node label(s).
Anything else you would like to add?
To support network policy application on host having multiple interface
The text was updated successfully, but these errors were encountered: