Ruleset Policies
What are Ruleset Policies
apiVersion: spyderbat/v1
kind: SpyderbatPolicy
metadata:
createdBy: [email protected]
creationTimestamp: 1712787973
lastUpdatedBy: [email protected]
lastUpdatedTimestamp: 1714417836
name: demo-cluster-policy
selectorHash: 66e45259eba6ed4365e28e7e673a18cf
type: cluster
uid: pol:xxxxxxxxxxxxxxxxxxxx
version: 1
spec:
clusterSelector:
matchFields:
name: demo-cluster
enabled: true
mode: audit
rulesets:
- demo-cluster-ruleset
response:
default:
- makeRedFlag:
severity: high
actions: []How rules are evaluated
Evaluation Order
Examples
Scenario 1 (Global Explicit Allow):
Scenario 2 (Default Deny)
Scenario 3 (Global Explicit Allow with Global Wildcard Deny):
Scenario 3 (Scoped Wildcarded Allow with Global Explicit Deny):
Scenario 4 (Scoped Explicit Allow with Scoped Wildcarded Deny)
Scenario 5 (Scoped Explicit Allow with Scoped Explicit Deny)
Quick Start Tutorial
Last updated
Was this helpful?