This allows to forbid access from canaries in non-whitelisted namespaces. In a multi-tenant context, this can be combined with network policies to maintain isolation between namespaces. Signed-off-by: Cédric Connes <cedric.connes@gmail.com>