apiVersion: networking.k8s.io/v1 kind: NetworkPolicy metadata: name: default-deny-ingress namespace: vpn labels: platform.edge.ncr.com/component: wireguard-store spec: ingress: - {} podSelector: {} policyTypes: - Ingress --- apiVersion: networking.k8s.io/v1 kind: NetworkPolicy metadata: name: allow-all-egress namespace: vpn labels: platform.edge.ncr.com/component: wireguard-store spec: egress: - {} podSelector: matchLabels: platform.edge.ncr.com/component: wireguard-store policyTypes: - Egress