-
Notifications
You must be signed in to change notification settings - Fork 555
Closed
Closed
Copy link
Labels
ENT-ATRenhancementNew feature or requestNew feature or requestneeds-triageIssue is not approved or ready-to-work onIssue is not approved or ready-to-work on
Description
π Feature description
Currently, we have the capability to define labels at the environment level, which are automatically propagated. However, this functionality is not mandatory for environment creation. Unlike application creation, where label specification is enforced, there is no policy enforcement to ensure labels are consistently applied at the environment level during its creation.
π€ Pitch / Usecases
We propose the introduction of a policy mechanism, similar to Pod Security Levels, at the namespace level. This policy would ensure that no new pods are created with elevated access or security privileges beyond the defined thresholds. While Devtron currently supports the use of labels at the namespace level, there is no provision to make these labels mandatory during environment creation. Enforcing such a policy would enhance security and standardization across environments.
ποΈ Alternative
No response
π Have you spent some time to check if this issue has been raised before?
- I checked and didn't find similar issue
π’ Have you read the Code of Conduct?
- I have read the Code of Conduct
Metadata
Metadata
Assignees
Labels
ENT-ATRenhancementNew feature or requestNew feature or requestneeds-triageIssue is not approved or ready-to-work onIssue is not approved or ready-to-work on