For AI agents: A markdown version of this page is available at https://docs.datadoghq.com/security/default_rules/def-000-5b2.md. A documentation index is available at /llms.txt.

VPC-native clusters should be used

Description

Alias IPs should be enabled for the node network CIDR range in order to subsequently configure IP-based policies and firewalling for pods.

Remediation

Note: You cannot enable IP Aliases on an existing cluster.

Follow the how-to from the Create a Native-VPC cluster guide to create a cluster with IP Aliases enabled.

References