Skip to content

Feature: Introduce Mandatory Propagation of Labels at the Environment Level #6287

Open
@badal773

Description

@badal773

🔖 Feature description

Screenshot 2025-01-15 at 12 35 20 PM Currently, we have the capability to define labels at the environment level, which are automatically propagated. However, this functionality is not mandatory for environment creation. Unlike application creation, where label specification is enforced, there is no policy enforcement to ensure labels are consistently applied at the environment level during its creation.

🎤 Pitch / Usecases

We propose the introduction of a policy mechanism, similar to Pod Security Levels, at the namespace level. This policy would ensure that no new pods are created with elevated access or security privileges beyond the defined thresholds. While Devtron currently supports the use of labels at the namespace level, there is no provision to make these labels mandatory during environment creation. Enforcing such a policy would enhance security and standardization across environments.

Screenshot 2025-01-15 at 12 42 49 PM

🔄️ Alternative

No response

👀 Have you spent some time to check if this issue has been raised before?

  • I checked and didn't find similar issue

🏢 Have you read the Code of Conduct?

Metadata

Metadata

Labels

ENT-ATRenhancementNew feature or requestneeds-triageIssue is not approved or ready-to-work on

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions