From 1e30965e548b53e22070c6673cee17c56cdc71d6 Mon Sep 17 00:00:00 2001 From: "Reddy, Hemachandra (hr858f)" Date: Tue, 13 Jul 2021 16:23:57 -0500 Subject: [PATCH] Add cleanup for Calico policy This commit adds cleanup for Calico global network policy so it can be prevented from deploying downstream. Change-Id: I4cfdc555d1776fbafd49d69ba10f97402563abd2 --- .../calico-policy-cleanup/cleanup-calico-policy.yaml | 12 ++++++++++++ .../calico/calico-policy-cleanup/kustomization.yaml | 4 ++++ 2 files changed, 16 insertions(+) create mode 100644 manifests/function/network-policy/calico/calico-policy-cleanup/cleanup-calico-policy.yaml create mode 100644 manifests/function/network-policy/calico/calico-policy-cleanup/kustomization.yaml diff --git a/manifests/function/network-policy/calico/calico-policy-cleanup/cleanup-calico-policy.yaml b/manifests/function/network-policy/calico/calico-policy-cleanup/cleanup-calico-policy.yaml new file mode 100644 index 000000000..376d0843d --- /dev/null +++ b/manifests/function/network-policy/calico/calico-policy-cleanup/cleanup-calico-policy.yaml @@ -0,0 +1,12 @@ +apiVersion: builtin +kind: PatchTransformer +metadata: + name: delete-treasuremap-policy.yaml +target: + kind: GlobalNetworkPolicy +patch: | + apiVersion: not-important + kind: not-important + metadata: + name: hosts-ingress-rule + $patch: delete diff --git a/manifests/function/network-policy/calico/calico-policy-cleanup/kustomization.yaml b/manifests/function/network-policy/calico/calico-policy-cleanup/kustomization.yaml new file mode 100644 index 000000000..575cf23a0 --- /dev/null +++ b/manifests/function/network-policy/calico/calico-policy-cleanup/kustomization.yaml @@ -0,0 +1,4 @@ +# Prevent policies from being deployed into downstream + +resources: + - cleanup-calico-policy.yaml