From ebb5f273b610ee697130719dee9503e82f767910 Mon Sep 17 00:00:00 2001 From: Sheogorath <sheogorath@shivering-isles.com> Date: Mon, 20 Nov 2023 03:40:41 +0100 Subject: [PATCH] fix(dns): Add missing network policy for DoT --- apps/k8s01/dns/networkpolicy.yaml | 16 ++++++++++++++++ 1 file changed, 16 insertions(+) diff --git a/apps/k8s01/dns/networkpolicy.yaml b/apps/k8s01/dns/networkpolicy.yaml index ada5fc305..592d47d21 100644 --- a/apps/k8s01/dns/networkpolicy.yaml +++ b/apps/k8s01/dns/networkpolicy.yaml @@ -16,3 +16,19 @@ spec: port: 53 - protocol: TCP port: 53 +--- +apiVersion: networking.k8s.io/v1 +kind: NetworkPolicy +metadata: + name: allow-from-everywhere-to-dot +spec: + podSelector: + matchLabels: + app: resolver + ingress: + - from: + - ipBlock: + cidr: 0.0.0.0/0 + ports: + - protocol: TCP + port: 853 \ No newline at end of file -- GitLab