apiVersion: kyverno.io/v1 kind: Policy metadata: name: validate spec: validationFailureAction: Audit admission: false background: true rules: - name: validate match: any: - resources: kinds: - Pod validate: deny: {}