2018-07-25 16:54:28 +00:00
|
|
|
# Copyright 2018 Google LLC
|
|
|
|
#
|
|
|
|
# Licensed under the Apache License, Version 2.0 (the "License");
|
|
|
|
# you may not use this file except in compliance with the License.
|
|
|
|
# You may obtain a copy of the License at
|
|
|
|
#
|
|
|
|
# http://www.apache.org/licenses/LICENSE-2.0
|
|
|
|
#
|
|
|
|
# Unless required by applicable law or agreed to in writing, software
|
|
|
|
# distributed under the License is distributed on an "AS IS" BASIS,
|
|
|
|
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
|
|
# See the License for the specific language governing permissions and
|
|
|
|
# limitations under the License.
|
|
|
|
|
2018-07-12 21:56:43 +00:00
|
|
|
apiVersion: networking.istio.io/v1alpha3
|
|
|
|
kind: ServiceEntry
|
|
|
|
metadata:
|
|
|
|
name: whitelist-egress-googleapis
|
|
|
|
spec:
|
|
|
|
hosts:
|
|
|
|
- "accounts.google.com" # Used to get token
|
|
|
|
- "*.googleapis.com"
|
|
|
|
ports:
|
|
|
|
- number: 80
|
|
|
|
protocol: HTTP
|
2018-07-16 18:00:46 +00:00
|
|
|
name: http
|
2018-07-12 21:56:43 +00:00
|
|
|
- number: 443
|
|
|
|
protocol: HTTPS
|
2018-07-16 18:00:46 +00:00
|
|
|
name: https
|
2019-03-11 14:49:27 +00:00
|
|
|
---
|
|
|
|
apiVersion: networking.istio.io/v1alpha3
|
|
|
|
kind: ServiceEntry
|
|
|
|
metadata:
|
|
|
|
name: whitelist-egress-google-metadata
|
|
|
|
spec:
|
|
|
|
hosts:
|
|
|
|
- metadata.google.internal
|
|
|
|
addresses:
|
|
|
|
- 169.254.169.254 # GCE metadata server
|
|
|
|
ports:
|
|
|
|
- number: 80
|
|
|
|
name: http
|
|
|
|
protocol: HTTP
|
|
|
|
- number: 443
|
|
|
|
name: https
|
|
|
|
protocol: HTTPS
|