knockknock10 opened a new pull request, #6866:
URL: https://github.com/apache/camel-k/pull/6866

   ## Description
   
   Fixes #6859
   
   This PR adds optional Kubernetes NetworkPolicy support to the Camel K 
Service trait.
   
   ### Changes
   
   - Add `network-policy-enabled` configuration to the Service trait.
   - Add namespace and pod selector configuration for controlling allowed 
ingress sources.
   - Generate an ingress-only `NetworkPolicy` for the Integration when 
explicitly enabled.
   - Require at least one namespace or pod selector when NetworkPolicy is 
enabled.
   - Combine namespace and pod selectors into the same `NetworkPolicyPeer`.
   - Add unit tests covering the disabled-by-default behavior, selector 
handling, and validation.
   - Add an end-to-end test using Calico to verify allowed and denied access.
   - Add the required NetworkPolicy RBAC permissions.
   - Update generated CRDs and API documentation.
   - Add CI diagnostics for the NetworkPolicy E2E workflow.
   
   The NetworkPolicy is managed as part of the Service trait lifecycle and 
targets the Integration pods associated with the exposed Service.
   
   ### Issue
   
   This addresses https://github.com/apache/camel-k/issues/6859.


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]

Reply via email to