Skip to content

Commit

Permalink
Allow cpfs pods to establish DNS connection (#2040)
Browse files Browse the repository at this point in the history
Signed-off-by: Daniel Fan <[email protected]>
  • Loading branch information
Daniel-Fan authored Jun 18, 2024
1 parent a285d8b commit c791a88
Show file tree
Hide file tree
Showing 16 changed files with 224 additions and 0 deletions.
Original file line number Diff line number Diff line change
Expand Up @@ -17,6 +17,20 @@ spec:
matchLabels:
apiserver: 'true'
namespaceSelector: {}
- ports:
- port: 53
protocol: UDP
- port: 53
protocol: TCP
- port: 5353
protocol: UDP
- port: 5353
protocol: TCP
to:
- namespaceSelector: {}
podSelector:
matchLabels:
dns.operator.openshift.io/daemonset-dns: default
podSelector:
matchLabels:
name: "ibm-cert-manager-operator"
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -17,6 +17,20 @@ spec:
matchLabels:
apiserver: 'true'
namespaceSelector: {}
- ports:
- port: 53
protocol: UDP
- port: 53
protocol: TCP
- port: 5353
protocol: UDP
- port: 5353
protocol: TCP
to:
- namespaceSelector: {}
podSelector:
matchLabels:
dns.operator.openshift.io/daemonset-dns: default
podSelector:
matchLabels:
name: "ibm-license-service-reporter-operator"
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -22,3 +22,17 @@ spec:
matchLabels:
apiserver: 'true'
namespaceSelector: {}
- ports:
- port: 53
protocol: UDP
- port: 53
protocol: TCP
- port: 5353
protocol: UDP
- port: 5353
protocol: TCP
to:
- namespaceSelector: {}
podSelector:
matchLabels:
dns.operator.openshift.io/daemonset-dns: default
Original file line number Diff line number Diff line change
Expand Up @@ -26,5 +26,19 @@ spec:
matchLabels:
apiserver: 'true'
namespaceSelector: {}
- ports:
- port: 53
protocol: UDP
- port: 53
protocol: TCP
- port: 5353
protocol: UDP
- port: 5353
protocol: TCP
to:
- namespaceSelector: {}
podSelector:
matchLabels:
dns.operator.openshift.io/daemonset-dns: default
policyTypes:
- Egress
Original file line number Diff line number Diff line change
Expand Up @@ -20,5 +20,19 @@ spec:
matchLabels:
apiserver: 'true'
namespaceSelector: {}
- ports:
- port: 53
protocol: UDP
- port: 53
protocol: TCP
- port: 5353
protocol: UDP
- port: 5353
protocol: TCP
to:
- namespaceSelector: {}
podSelector:
matchLabels:
dns.operator.openshift.io/daemonset-dns: default
policyTypes:
- Egress
Original file line number Diff line number Diff line change
Expand Up @@ -17,6 +17,20 @@ spec:
podSelector:
matchLabels:
apiserver: "true"
- ports:
- port: 53
protocol: UDP
- port: 53
protocol: TCP
- port: 5353
protocol: UDP
- port: 5353
protocol: TCP
to:
- namespaceSelector: {}
podSelector:
matchLabels:
dns.operator.openshift.io/daemonset-dns: default
podSelector:
matchLabels:
app.kubernetes.io/name: "ibm-bts-operator"
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -17,6 +17,20 @@ spec:
podSelector:
matchLabels:
apiserver: "true"
- ports:
- port: 53
protocol: UDP
- port: 53
protocol: TCP
- port: 5353
protocol: UDP
- port: 5353
protocol: TCP
to:
- namespaceSelector: {}
podSelector:
matchLabels:
dns.operator.openshift.io/daemonset-dns: default
podSelector:
matchLabels:
name: "ibm-common-service-operator"
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -17,6 +17,20 @@ spec:
podSelector:
matchLabels:
apiserver: "true"
- ports:
- port: 53
protocol: UDP
- port: 53
protocol: TCP
- port: 5353
protocol: UDP
- port: 5353
protocol: TCP
to:
- namespaceSelector: {}
podSelector:
matchLabels:
dns.operator.openshift.io/daemonset-dns: default
podSelector:
matchLabels:
name: "ibm-commonui-operator"
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -17,6 +17,20 @@ spec:
podSelector:
matchLabels:
apiserver: "true"
- ports:
- port: 53
protocol: UDP
- port: 53
protocol: TCP
- port: 5353
protocol: UDP
- port: 5353
protocol: TCP
to:
- namespaceSelector: {}
podSelector:
matchLabels:
dns.operator.openshift.io/daemonset-dns: default
podSelector:
matchLabels:
name: "ibm-events-operator"
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -33,6 +33,20 @@ spec:
podSelector:
matchLabels:
apiserver: "true"
- ports:
- port: 53
protocol: UDP
- port: 53
protocol: TCP
- port: 5353
protocol: UDP
- port: 5353
protocol: TCP
to:
- namespaceSelector: {}
podSelector:
matchLabels:
dns.operator.openshift.io/daemonset-dns: default
podSelector:
matchLabels:
name: "ibm-iam-operator"
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -17,6 +17,20 @@ spec:
podSelector:
matchLabels:
apiserver: "true"
- ports:
- port: 53
protocol: UDP
- port: 53
protocol: TCP
- port: 5353
protocol: UDP
- port: 5353
protocol: TCP
to:
- namespaceSelector: {}
podSelector:
matchLabels:
dns.operator.openshift.io/daemonset-dns: default
podSelector:
matchLabels:
name: "ibm-mongodb-operator"
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -17,6 +17,20 @@ spec:
podSelector:
matchLabels:
apiserver: "true"
- ports:
- port: 53
protocol: UDP
- port: 53
protocol: TCP
- port: 5353
protocol: UDP
- port: 5353
protocol: TCP
to:
- namespaceSelector: {}
podSelector:
matchLabels:
dns.operator.openshift.io/daemonset-dns: default
podSelector:
matchLabels:
name: "ibm-namespace-scope-operator"
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -17,6 +17,20 @@ spec:
podSelector:
matchLabels:
apiserver: "true"
- ports:
- port: 53
protocol: UDP
- port: 53
protocol: TCP
- port: 5353
protocol: UDP
- port: 5353
protocol: TCP
to:
- namespaceSelector: {}
podSelector:
matchLabels:
dns.operator.openshift.io/daemonset-dns: default
podSelector:
matchLabels:
name: "operand-deployment-lifecycle-manager"
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -26,6 +26,20 @@ spec:
podSelector:
matchLabels:
apiserver: "true"
- ports:
- port: 53
protocol: UDP
- port: 53
protocol: TCP
- port: 5353
protocol: UDP
- port: 5353
protocol: TCP
to:
- namespaceSelector: {}
podSelector:
matchLabels:
dns.operator.openshift.io/daemonset-dns: default
podSelector:
matchLabels:
name: "ibm-zen-operator"
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -20,5 +20,19 @@ spec:
matchLabels:
apiserver: 'true'
namespaceSelector: {}
- ports:
- port: 53
protocol: UDP
- port: 53
protocol: TCP
- port: 5353
protocol: UDP
- port: 5353
protocol: TCP
to:
- namespaceSelector: {}
podSelector:
matchLabels:
dns.operator.openshift.io/daemonset-dns: default
policyTypes:
- Egress
Original file line number Diff line number Diff line change
Expand Up @@ -17,6 +17,20 @@ spec:
podSelector:
matchLabels:
apiserver: "true"
- ports:
- port: 53
protocol: UDP
- port: 53
protocol: TCP
- port: 5353
protocol: UDP
- port: 5353
protocol: TCP
to:
- namespaceSelector: {}
podSelector:
matchLabels:
dns.operator.openshift.io/daemonset-dns: default
podSelector:
matchLabels:
name: "rhbk-operator"
Expand Down

0 comments on commit c791a88

Please sign in to comment.