Required NetworkPolicies for Services of type "LoadBalancer"

Solution Verified - Updated -

Issue

  • When NetworkPolicies for multitenancy are applied to a namespace, it can not be accessed via a Service with type: LoadBalancer.
  • When using a Load Balancer created by a Service with externalTrafficPolicy: Local, connections to the load balancer fail when there are NetworkPolicies applied to the namespace:

    $ curl -v --connect-timeout 30 http://39337e442224f496502dea9eccb3064d.elb.eu-central-1.amazonaws.com
    *   Trying 10.174.43.198:80...
    * Connection timed out after 30007 milliseconds
    * Closing connection 0
    curl: (28) Connection timed out after 30007 milliseconds
    
  • Sometimes a Load Balancer created by a Service with externalTrafficPolicy: Cluster intermittently works, what is the root cause for this?

Environment

  • Red Hat OpenShift Container Platform (OCP) 4

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In