{"id":"netpol-deny-all-ingress-pattern","text":"A NetworkPolicy with `podSelector: {}` and empty `ingress: []` creates a deny-all-ingress policy; `ingress: [{}]` (empty rule) means allow-all-ingress.","truth_value":"IN","source":"entries/2026/03/05/en-documentation-openshift_container_platform-417-html-network_security-network-.md","source_url":"","source_hash":"4518e139ef6eecaa","justifications":[],"dependents":[],"metadata":{},"explanation":{"steps":[{"node":"netpol-deny-all-ingress-pattern","truth_value":"IN","reason":"premise"}]}}