Aryan Gupta
Aryan Gupta
‘PeerAuth’ policies only enforce at the workload with sidecar, hence it won’t get applied to headless services.
@nmittler ah my bad I got confused with the naked service, looking into the issue.
@nmittler One possibility for this issue - https://istio.io/latest/docs/ops/common-problems/network-issues/#503-error-while-accessing-headless-services
/test integ-security-multicluster_istio
/test integ-telemetry-mc_istio
/test integ-security-multicluster_istio
/test integ-pilot_istio
I believe @liwenhao0810 is correct, we can't do it in authz policy directly but you can try to use "CUSTOM" type policy and create your own external service to fulfill...
Yeah it's still in alpha. But I think we have customers who are using it.
any updates on this one? I'm still seeing this issue.