2018-07-25 09:54:28 -07:00
|
|
|
# Copyright 2018 Google LLC
|
|
|
|
#
|
|
|
|
# Licensed under the Apache License, Version 2.0 (the "License");
|
|
|
|
# you may not use this file except in compliance with the License.
|
|
|
|
# You may obtain a copy of the License at
|
|
|
|
#
|
|
|
|
# http://www.apache.org/licenses/LICENSE-2.0
|
|
|
|
#
|
|
|
|
# Unless required by applicable law or agreed to in writing, software
|
|
|
|
# distributed under the License is distributed on an "AS IS" BASIS,
|
|
|
|
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
|
|
# See the License for the specific language governing permissions and
|
|
|
|
# limitations under the License.
|
|
|
|
|
2018-07-12 14:56:43 -07:00
|
|
|
apiVersion: networking.istio.io/v1alpha3
|
|
|
|
kind: ServiceEntry
|
|
|
|
metadata:
|
|
|
|
name: whitelist-egress-googleapis
|
|
|
|
spec:
|
|
|
|
hosts:
|
|
|
|
- "accounts.google.com" # Used to get token
|
|
|
|
- "*.googleapis.com"
|
|
|
|
ports:
|
|
|
|
- number: 80
|
|
|
|
protocol: HTTP
|
2018-07-16 11:00:46 -07:00
|
|
|
name: http
|
2018-07-12 14:56:43 -07:00
|
|
|
- number: 443
|
|
|
|
protocol: HTTPS
|
2018-07-16 11:00:46 -07:00
|
|
|
name: https
|
2019-03-11 07:49:27 -07:00
|
|
|
---
|
|
|
|
apiVersion: networking.istio.io/v1alpha3
|
|
|
|
kind: ServiceEntry
|
|
|
|
metadata:
|
|
|
|
name: whitelist-egress-google-metadata
|
|
|
|
spec:
|
|
|
|
hosts:
|
|
|
|
- metadata.google.internal
|
|
|
|
addresses:
|
|
|
|
- 169.254.169.254 # GCE metadata server
|
|
|
|
ports:
|
|
|
|
- number: 80
|
|
|
|
name: http
|
|
|
|
protocol: HTTP
|
|
|
|
- number: 443
|
|
|
|
name: https
|
|
|
|
protocol: HTTPS
|