---
title: "Policy for Istio"
description: "Configure Calico Open Source application-layer policy to apply Istio service mesh attributes (HTTP methods, paths) to Kubernetes traffic."
product: "Calico Open Source"
version: "3.32 (latest)"
section: "Network policy"
canonical_url: "https://docs.tigera.io/calico/latest/network-policy/istio/"
---

# Policy for Istio

## [📄️Enforce Calico network policy for Istio service mesh](https://docs.tigera.io/calico/latest/network-policy/istio/app-layer-policy.md)

[Apply Calico Open Source network policy to Istio service-mesh traffic, including matching on HTTP methods and paths.](https://docs.tigera.io/calico/latest/network-policy/istio/app-layer-policy.md)

## [📄️Use HTTP methods and paths in policy rules](https://docs.tigera.io/calico/latest/network-policy/istio/http-methods.md)

[Restrict ingress traffic to Istio-enabled apps by matching HTTP methods or paths in a Calico Open Source network policy.](https://docs.tigera.io/calico/latest/network-policy/istio/http-methods.md)

## [📄️Enforce Calico network policy using Istio (tutorial)](https://docs.tigera.io/calico/latest/network-policy/istio/enforce-policy-istio.md)

[Use Calico Open Source with Istio to apply fine-grained access control at both the network layer and inside the service mesh.](https://docs.tigera.io/calico/latest/network-policy/istio/enforce-policy-istio.md)
