Project Templates์ถœ์ฒ˜: Show HN์กฐํšŒ์ˆ˜ 6

Show HN: Generate baseline Kubernetes NetworkPolicies from rendered manifests

By dormstern
2026๋…„ 2์›” 19์ผ
**Show HN: Generate baseline Kubernetes NetworkPolicies from rendered manifests**

A lot of clusters still run โ€œallow-allโ€ east/west because NetworkPolicies arenโ€™t enforced everywhere. I built a small static analyzer that reads rendered manifests (Helm/Argo CD/Kustomize output) and emits baseline NetworkPolicy YAML you can commit + diff in PRs.Workflow:PR changes manifestsCI regenerates policiesreviewers see โ€œnewly allowedโ€ connections as a normal permission diffCurious how others handle this: would you rather review generated policy diffs, or a connectivity-graph diff. Any edge cases youโ€™ve seen bite in real clusters (headless services, shared namespaces, DNS/egress, service meshes, etc.). Comments URL: https://news.ycombinator.com/item?id=47067580 Points: 1 # Comments: 0

---

**[devsupporter ํ•ด์„ค]**

์ด ๊ธฐ์‚ฌ๋Š” Show HN์—์„œ ์ œ๊ณตํ•˜๋Š” ์ตœ์‹  ๊ฐœ๋ฐœ ๋™ํ–ฅ์ž…๋‹ˆ๋‹ค. ๊ด€๋ จ ๋„๊ตฌ๋‚˜ ๊ธฐ์ˆ ์— ๋Œ€ํ•ด ๋” ์•Œ์•„๋ณด์‹œ๋ ค๋ฉด ์›๋ณธ ๋งํฌ๋ฅผ ์ฐธ๊ณ ํ•˜์„ธ์š”.