Skip to main content
Version: v3.9.0

Registry fields

Reference for kind: Registry. Deploy and the built-in aliases are on Registries.

Unknown keys fail at deploy. Retired keys requiresCert, isSecure, and certificate fail the same way.

Deploy
apiVersion: datasance.com/v3 # required, string
kind: Registry # required, string
metadata:
namespace: my-ecn # no, string. Must match -n when both are set
spec:
url: https://registry.example.com # required, string
private: false # no, bool, default false
type: oci # no, string, default oci. oci or hf
username: pull-user # conditional, string. Required with password for private oci
password: pull-token # conditional, string. Required for private oci and private hf
email: [email protected] # no, string
ca: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0t # no, string. Base64 PEM. A file path is rejected
insecure: false # no, bool
id: 0 # update, int. Omit or 0 on create. Greater than 0 on update

metadata.namespace must match -n when both are set. Describe output has no metadata.name.

Fields​

FieldTypeRequiredDescription
urlstringYesRegistry host or URL.
privateboolNoDefault false. true stores a private registry and applies the credential rules below.
typestringNoDefault oci. Allowed: oci, hf. Compared after lowercasing.
usernamestringConditionalPrivate oci: required with password. Private hf: optional.
passwordstringConditionalPrivate oci: required with username. Private hf: required token.
emailstringNoOptional for both types.
castringNoPrivate CA as one base64 string of the PEM. A file path is rejected.
insecureboolNoSkip TLS verification when true.
idintUpdateCreate: omit or 0. Update: the Controller id, greater than 0.

Validation​

ConditionError
Empty urlURL cannot be empty.
type other than oci or hftype must be oci or hf.
Private oci without username and passwordUsername and password are required.
Private hf without passwordPassword cannot be empty for private hf registry.
requiresCert, isSecure, or certificateStrict unmarshal failure.

The Controller can also return 400 or 409. The CLI prints that body.

Create and update​

On create, omit spec.id. Run get registries and copy the assigned id.

On update, set spec.id and send the full intent for url, type, private, credentials, ca, and insecure. Omitted pointer fields can be sent as null.

Describe includes id, url, private, type, username, email, ca, insecure, and password.

Retired keys​

Removed keyUse instead
isSecuretype, ca, insecure
requiresCertca
certificateca
Group 3See anything wrong with the document? Help us improve it!