VPC-native clusters should be used

Description

Alias IPs should be enabled for the node network CIDR range in order to subsequently configure IP-based policies and firewalling for pods.

Remediation

Note: You cannot enable IP Aliases on an existing cluster.

Follow the how-to from the Create a Native-VPC cluster guide to create a cluster with IP Aliases enabled.

References