nimbus
nimbus copied to clipboard
Cilium Network Policy Adapter: DNS Manipulation Intent
Data exfiltration can occur through malicious domain names
Using CiliumNetworkPolicy we can specify a fqdn whitelist as a CRD.
The destination DNS requests should be restricted to this whitelist
This fqdn whitelist could also be generated by the discovery engine