Allows you to securely access private container registries
994
The Private Registry with Disposable Tokens is a project that allows you to securely access private container registries (e.g., AWS Elastic Container Registry - ECR) using disposable tokens. It aims to simplify the authentication process when pulling images from private registries, ensuring that tokens are short-lived and automatically refreshed.
With this project, you no longer need to manage long-lived access keys or tokens manually. Instead, it provides an automated mechanism to generate and manage disposable tokens for seamless integration with Kubernetes clusters, CI/CD pipelines, and other container orchestration tools.
Before using the Private Registry with Disposable Tokens, ensure you have the following prerequisites:
Clone helm chart registrycredsscheduler
Update chart values, token and region endpoint
Install: helm install registrycredsscheduler .
Q: Can I use this project with other container registries besides AWS ECR?
A: Yes, you can configure the project to work with other private registries as well. Customize the token generator and token updater settings accordingly.
Q: How often are the disposable tokens refreshed?
A: The tokens are refreshed automatically every 11h and expierd every 12h.
Q: Are the credentials and tokens stored securely?
A: Yes, the project uses Kubernetes Secrets to handle credentials and tokens securely.
Contributions are welcome! If you find any issues or have improvements to suggest, please open an issue or submit a pull request.
Content type
Image
Digest
sha256:a1e7e13a3…
Size
55.5 MB
Last updated
almost 3 years ago
docker pull bridgecrew/cas-image-registry-sync-scheduler