opa gatekeeper v3.23.1

Assign.spec.match.namespaces

Namespaces is a list of namespace names. If defined, a constraint only applies to resources in a listed namespace. Namespaces also supports a prefix or suffix based glob. For example, `namespaces: [kube-*]` matches both `kube-system` and `kube-public`, and `namespaces: [*-system]` matches both `kube-system` and `gatekeeper-system`.

1 fields
Assign.spec.match.namespaces fields and descriptions
Field / TypeDescription
Assign.spec.match.namespaces
string

A string that supports globbing at its front and end. Ex: "kube-*" will match "kube-system" or "kube-public", "*-system" will match "kube-system" or "gatekeeper-system", "*system*" will match "system-kube" or "kube-system". The asterisk is required for wildcard matching.

  • pattern: ^\*?[-:a-z0-9]*\*?$