firefly-iii: Add network policy

This network policy blocks all outbound communication except to the
designated internal services.  This will help prevent any data
exfiltration in the unlikely event the Firefly were to be compromised.
This commit is contained in:
2025-10-19 15:46:49 -05:00
parent bbcf2d7599
commit 33ee59cb90
2 changed files with 62 additions and 0 deletions

View File

@@ -16,6 +16,7 @@ resources:
- importer.yaml
- importer-ingress.yaml
- ../dch-root-ca
- network-policy.yaml
configMapGenerator:
- name: firefly-iii