apiVersion: kyverno.io/v1alpha1 kind: Policy metadata: name: "default" spec: rules: - name: "deny-ingress-traffic" resource: kinds: - Namespace name: "devtest" generate: kind: NetworkPolicy name: deny-ingress-traffic data: spec: podSelector: matchLabels: {} matchExpressions: [] policyTypes: - Ingress metadata: annotations: {} labels: policyname: "default" # kind: ConfigMap # name: default-config # clone: # namespace: default # name: config-template