Skip to content

MEM-1136: add default-deny-all network policy to laa-info-and-advice-datastore-staging - #44751

Merged
Ian King (ian-antking) merged 2 commits into
mainfrom
mem-1136-staging-add-default-deny-all
Aug 7, 2026
Merged

MEM-1136: add default-deny-all network policy to laa-info-and-advice-datastore-staging#44751
Ian King (ian-antking) merged 2 commits into
mainfrom
mem-1136-staging-add-default-deny-all

Conversation

@ian-antking

Copy link
Copy Markdown
Contributor

Introduces a default-deny for all ingress and egress as the baseline before adding minimum-privilege allow rules via the app helm chart.

…datastore-staging

Introduces a default-deny for all ingress and egress as the baseline
before adding minimum-privilege allow rules via the app helm chart.
@ian-antking
Ian King (ian-antking) requested a review from a team as a code owner August 7, 2026 15:19
# Conflicts:
#	namespaces/live.cloud-platform.service.justice.gov.uk/laa-info-and-advice-datastore-staging/04-networkpolicy.yaml
@sablumiah

Copy link
Copy Markdown
Contributor

Terraform Plan Summary

Terraform Plan: 0 to be created, 0 to be destroyed, 1 to be updated, 0 to be replaced and 25 unchanged.

Resources to update:

! module.rds.aws_db_parameter_group.custom_parameters

@sablumiah

Copy link
Copy Markdown
Contributor

This PR CANNOT be auto approved and requires manual approval from the Cloud Platform team.
Reason:
🕵️‍♂️ Detected changes to K8s YAML files. Manual review needed.
Please raise it in #ask-cloud-platform Slack channel.

@ian-antking
Ian King (ian-antking) merged commit fc5f451 into main Aug 7, 2026
14 checks passed
@ian-antking
Ian King (ian-antking) deleted the mem-1136-staging-add-default-deny-all branch August 7, 2026 15:26
@sablumiah

Copy link
Copy Markdown
Contributor

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants