backport of commit a6322d8c94 (#17444)

Co-authored-by: Luke Kysow <1034429+lkysow@users.noreply.github.com>
pull/17447/head
hc-github-team-consul-core 2023-05-24 12:05:01 -04:00 committed by GitHub
parent a5960414a1
commit 58806aa0a8
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 19 additions and 14 deletions

View File

@ -816,6 +816,8 @@ Sources = [
```yaml ```yaml
apiVersion: consul.hashicorp.com/v1alpha1 apiVersion: consul.hashicorp.com/v1alpha1
kind: ServiceIntentions kind: ServiceIntentions
metadata:
name: db
spec: spec:
destination: destination:
name: db name: db
@ -865,6 +867,8 @@ Sources = [
```yaml ```yaml
apiVersion: consul.hashicorp.com/v1alpha1 apiVersion: consul.hashicorp.com/v1alpha1
kind: ServiceIntentions kind: ServiceIntentions
metadata:
name: web-deny-all
spec: spec:
destination: destination:
name: * name: *
@ -908,6 +912,8 @@ Sources = [
```yaml ```yaml
apiVersion: consul.hashicorp.com/v1alpha1 apiVersion: consul.hashicorp.com/v1alpha1
kind: ServiceIntentions kind: ServiceIntentions
metadata:
name: db
spec: spec:
destination: destination:
name: db name: db
@ -1251,20 +1257,19 @@ When using cluster peering connections, intentions secure your deployments with
``` ```
```yaml ```yaml
```yaml apiVersion: consul.hashicorp.com/v1alpha1
apiVersion: consul.hashicorp.com/v1alpha1 kind: ServiceIntentions
kind: ServiceIntentions metadata:
metadata: name: backend-deny
name: backend-deny spec:
spec: destination:
destination: name: backend
name: backend sources:
sources: - name: "*"
- name: "*" action: deny
action: deny - name: frontend
- name: frontend action: allow
action: allow peer: cluster-01 ## The peer of the source service
peer: cluster-01 ## The peer of the source service
``` ```
```json ```json