What are Network Policies?
Kubernetes Network Policies are firewall rules for your pods. They control:- Ingress: What can connect TO your pod
- Egress: What your pod can connect TO
Structure of a Network Policy
How kguardian Generates Policies
- Observes traffic via eBPF for 5+ minutes
- Identifies peers by resolving IPs to pods/services
- Groups rules by protocol and port
- Deduplicates to create minimal policies
- Generates YAML ready to apply
Default-Deny Strategy
Best practice: Start with default-deny, then allowlist:Next steps: