Skip to content

Commit

Permalink
Fixes network poilicy overviews
Browse files Browse the repository at this point in the history
  • Loading branch information
ctauchen committed Nov 1, 2024
1 parent 5bfc9ea commit eb5f700
Show file tree
Hide file tree
Showing 3 changed files with 177 additions and 15 deletions.
64 changes: 59 additions & 5 deletions calico-enterprise/network-policy/index.mdx
Original file line number Diff line number Diff line change
@@ -1,11 +1,65 @@
---
description: Calico Enterprise Network Policy and Calico Enterprise Global Network Policy are the fundamental resources to secure workloads and hosts, and to adopt a zero trust security model.
hide_table_of_contents: true
---

# Security
import { DocCardLink, DocCardLinkLayout } from '/src/___new___/components';

import DocCardList from '@theme/DocCardList';
import { useCurrentSidebarCategory } from '@docusaurus/theme-common';
# Network policy

<DocCardList items={useCurrentSidebarCategory().items} />
Writing network policies is how you restrict traffic to pods in your Kubernetes cluster.
{{prodname}} extends the standard `NetworkPolicy` object to provide advanced network policy features, such as policies that apply to all namespaces.

## Getting started

<DocCardLinkLayout>
<DocCardLink docId='network-policy/policy-best-practices' />
<DocCardLink docId='network-policy/beginners/kubernetes-default-deny' />
<DocCardLink docId='network-policy/beginners/calico-network-policy' />
<DocCardLink docId='network-policy/networksets' />
<DocCardLink docId='network-policy/domain-based-policy' />
<DocCardLink docId='network-policy/recommendations/policy-recommendations' />
</DocCardLinkLayout>


## Policy rules

<DocCardLinkLayout>
<DocCardLink docId='network-policy/beginners/policy-rules/policy-rules-overview' />
<DocCardLink docId='network-policy/beginners/policy-rules/namespace-policy' />
<DocCardLink docId='network-policy/beginners/policy-rules/service-policy' />
<DocCardLink docId='network-policy/beginners/policy-rules/service-accounts' />
<DocCardLink docId='network-policy/beginners/policy-rules/external-ips-policy' />
<DocCardLink docId='network-policy/beginners/policy-rules/icmp-ping' />
</DocCardLinkLayout>

## Policy for hosts

<DocCardLinkLayout>
<DocCardLink docId='network-policy/hosts/protect-hosts' />
<DocCardLink docId='network-policy/hosts/kubernetes-nodes' />
<DocCardLink docId='network-policy/hosts/protect-hosts-tutorial' />
<DocCardLink docId='network-policy/hosts/host-forwarded-traffic' />
</DocCardLinkLayout>

## Policy tiers

<DocCardLinkLayout>
<DocCardLink docId='network-policy/policy-tiers/tiered-policy' />
<DocCardLink docId='network-policy/policy-tiers/allow-tigera' />
<DocCardLink docId='network-policy/policy-tiers/policy-tutorial-ui' />
<DocCardLink docId='network-policy/policy-tiers/rbac-tiered-policies' />
</DocCardLinkLayout>

## Policy for services

<DocCardLinkLayout>
<DocCardLink docId='network-policy/beginners/services/kubernetes-node-ports' />
<DocCardLink docId='network-policy/beginners/services/services-cluster-ips' />
</DocCardLinkLayout>

## Policy for extreme traffic

<DocCardLinkLayout>
<DocCardLink docId='network-policy/extreme-traffic/high-connection-workloads' />
<DocCardLink docId='network-policy/extreme-traffic/defend-dos-attack' />
</DocCardLinkLayout>
Original file line number Diff line number Diff line change
@@ -1,11 +1,65 @@
---
description: Calico Enterprise Network Policy and Calico Enterprise Global Network Policy are the fundamental resources to secure workloads and hosts, and to adopt a zero trust security model.
hide_table_of_contents: true
---

# Security
import { DocCardLink, DocCardLinkLayout } from '/src/___new___/components';

import DocCardList from '@theme/DocCardList';
import { useCurrentSidebarCategory } from '@docusaurus/theme-common';
# Network policy

<DocCardList items={useCurrentSidebarCategory().items} />
Writing network policies is how you restrict traffic to pods in your Kubernetes cluster.
{{prodname}} extends the standard `NetworkPolicy` object to provide advanced network policy features, such as policies that apply to all namespaces.

## Getting started

<DocCardLinkLayout>
<DocCardLink docId='network-policy/policy-best-practices' />
<DocCardLink docId='network-policy/beginners/kubernetes-default-deny' />
<DocCardLink docId='network-policy/beginners/calico-network-policy' />
<DocCardLink docId='network-policy/networksets' />
<DocCardLink docId='network-policy/domain-based-policy' />
<DocCardLink docId='network-policy/recommendations/policy-recommendations' />
</DocCardLinkLayout>


## Policy rules

<DocCardLinkLayout>
<DocCardLink docId='network-policy/beginners/policy-rules/policy-rules-overview' />
<DocCardLink docId='network-policy/beginners/policy-rules/namespace-policy' />
<DocCardLink docId='network-policy/beginners/policy-rules/service-policy' />
<DocCardLink docId='network-policy/beginners/policy-rules/service-accounts' />
<DocCardLink docId='network-policy/beginners/policy-rules/external-ips-policy' />
<DocCardLink docId='network-policy/beginners/policy-rules/icmp-ping' />
</DocCardLinkLayout>

## Policy for hosts

<DocCardLinkLayout>
<DocCardLink docId='network-policy/hosts/protect-hosts' />
<DocCardLink docId='network-policy/hosts/kubernetes-nodes' />
<DocCardLink docId='network-policy/hosts/protect-hosts-tutorial' />
<DocCardLink docId='network-policy/hosts/host-forwarded-traffic' />
</DocCardLinkLayout>

## Policy tiers

<DocCardLinkLayout>
<DocCardLink docId='network-policy/policy-tiers/tiered-policy' />
<DocCardLink docId='network-policy/policy-tiers/allow-tigera' />
<DocCardLink docId='network-policy/policy-tiers/policy-tutorial-ui' />
<DocCardLink docId='network-policy/policy-tiers/rbac-tiered-policies' />
</DocCardLinkLayout>

## Policy for services

<DocCardLinkLayout>
<DocCardLink docId='network-policy/beginners/services/kubernetes-node-ports' />
<DocCardLink docId='network-policy/beginners/services/services-cluster-ips' />
</DocCardLinkLayout>

## Policy for extreme traffic

<DocCardLinkLayout>
<DocCardLink docId='network-policy/extreme-traffic/high-connection-workloads' />
<DocCardLink docId='network-policy/extreme-traffic/defend-dos-attack' />
</DocCardLinkLayout>
Original file line number Diff line number Diff line change
@@ -1,11 +1,65 @@
---
description: Calico Enterprise Network Policy and Calico Enterprise Global Network Policy are the fundamental resources to secure workloads and hosts, and to adopt a zero trust security model.
hide_table_of_contents: true
---

# Security
import { DocCardLink, DocCardLinkLayout } from '/src/___new___/components';

import DocCardList from '@theme/DocCardList';
import { useCurrentSidebarCategory } from '@docusaurus/theme-common';
# Network policy

<DocCardList items={useCurrentSidebarCategory().items} />
Writing network policies is how you restrict traffic to pods in your Kubernetes cluster.
{{prodname}} extends the standard `NetworkPolicy` object to provide advanced network policy features, such as policies that apply to all namespaces.

## Getting started

<DocCardLinkLayout>
<DocCardLink docId='network-policy/policy-best-practices' />
<DocCardLink docId='network-policy/beginners/kubernetes-default-deny' />
<DocCardLink docId='network-policy/beginners/calico-network-policy' />
<DocCardLink docId='network-policy/networksets' />
<DocCardLink docId='network-policy/domain-based-policy' />
<DocCardLink docId='network-policy/recommendations/policy-recommendations' />
</DocCardLinkLayout>


## Policy rules

<DocCardLinkLayout>
<DocCardLink docId='network-policy/beginners/policy-rules/policy-rules-overview' />
<DocCardLink docId='network-policy/beginners/policy-rules/namespace-policy' />
<DocCardLink docId='network-policy/beginners/policy-rules/service-policy' />
<DocCardLink docId='network-policy/beginners/policy-rules/service-accounts' />
<DocCardLink docId='network-policy/beginners/policy-rules/external-ips-policy' />
<DocCardLink docId='network-policy/beginners/policy-rules/icmp-ping' />
</DocCardLinkLayout>

## Policy for hosts

<DocCardLinkLayout>
<DocCardLink docId='network-policy/hosts/protect-hosts' />
<DocCardLink docId='network-policy/hosts/kubernetes-nodes' />
<DocCardLink docId='network-policy/hosts/protect-hosts-tutorial' />
<DocCardLink docId='network-policy/hosts/host-forwarded-traffic' />
</DocCardLinkLayout>

## Policy tiers

<DocCardLinkLayout>
<DocCardLink docId='network-policy/policy-tiers/tiered-policy' />
<DocCardLink docId='network-policy/policy-tiers/allow-tigera' />
<DocCardLink docId='network-policy/policy-tiers/policy-tutorial-ui' />
<DocCardLink docId='network-policy/policy-tiers/rbac-tiered-policies' />
</DocCardLinkLayout>

## Policy for services

<DocCardLinkLayout>
<DocCardLink docId='network-policy/beginners/services/kubernetes-node-ports' />
<DocCardLink docId='network-policy/beginners/services/services-cluster-ips' />
</DocCardLinkLayout>

## Policy for extreme traffic

<DocCardLinkLayout>
<DocCardLink docId='network-policy/extreme-traffic/high-connection-workloads' />
<DocCardLink docId='network-policy/extreme-traffic/defend-dos-attack' />
</DocCardLinkLayout>

0 comments on commit eb5f700

Please sign in to comment.