new repository
network-policy-api
kubernetes-sigs
astoycos, abhiraut, rikatz
astoycos, abhiraut, rikatz
astoycos, abhiraut, rikatz
astoycos, abhiraut, rikatz
This sig-network sub-project addresses further work involving Kubernetes network security beyond the initial NetworkPolicy resource
sig-network
thockin, caseydavenport, dcbw, aojea
closes #5747
Any additional information or context to describe the request:
After much discussion in the Network Policy API Meeting, on the KEP for Cluster Scoped Network Policy and in slack(dis 1 dis 2) we (the sig-network-policy subgroup within Sig-Network) have decided that the best way to iterate on Network Policy, such as with the cluster-scoped network policy and a possible Network Policy V2, is to create a repo which will serve to house CRDs supported by the group. This follows the same pattern completed by the Kubernetes Gateway API. It has also been agreed upon that this repo should be called network-policy-api as it relates to future work involving k8's network security.
Putting the project outside of kubernetes/kubernetes will allow for faster iterations and greater design freedom for new objects related to kubernetes networking security
This issue serves to open up further discussion from the greater Sig-Network group around how the internals (CRD groups, api approval process etc should work) and to hopefully get permission to create the new repository.
/assign @thockin
/assign @dcbw
/assign @caseydavenport
/assign @aojea
/lgtm
/approve
/lgtm
thanks!
Apologies for the delay. The repo has been created - https://github.com/kubernetes-sigs/network-policy-api
Also created:
@astoycos Since you are not a member of @kubernetes/@kubernetes-sigs GitHub orgs, you'll first need to apply for membership. Once you are added as a member, you can be added in OWNERS and GitHub teams. :+1:
@nikhita I thing this can be closed then? :D
@rikatz https://github.com/kubernetes/community/pull/5773 still needs to merge :)