Rules

Configure policies and restrictions on a per-Namespace basis with Rules

Enforcement rules allow Bill, the cluster administrator, to set policies and restrictions on a per-Tenant basis. These rules are enforced by Capsule admission webhooks when Alice, the TenantOwner, creates or modifies resources in her Namespaces. With the rule construct, namespaces within the same tenant can be profiled differently depending on their metadata.


Enforcement

Configure policies and restrictions and enforce rules per namespace

Permissions

Configure policies and restrictions on a per-Tenant basis with Rules

Last modified June 24, 2026: feat: add rule enforcements (de95e4c)