Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

CoreDNS plugin question #45

Open
mqmr opened this issue Jul 31, 2024 · 1 comment
Open

CoreDNS plugin question #45

mqmr opened this issue Jul 31, 2024 · 1 comment

Comments

@mqmr
Copy link

mqmr commented Jul 31, 2024

[NOT A CONTRIBUTION]

Hello,

First of all big thanks for the great project!

I've been playing with it for some time and I wonder if there's a way to allow other, unrestricted, workloads to communicate with allow-listed endpoints directly, i.e. not via proxies.
I guess, that should be done at the DNS level, but with lack of CoreDNS knowledge, I cannot see how a DNS view could be created, so DNS rewrites happen to certain workloads only.

I'd appreciate for any advice.

Thank you!

@mqmr
Copy link
Author

mqmr commented Jul 31, 2024

After googling for a bit, I'd assume, it'd be possible to achieve that with "policy/firewall" plugin - https://github.com/coredns/policy?tab=readme-ov-file#kubernetes-metadata-multi-tenancy-policy

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant