2.7 Harbor开源项目容器镜像远程复制的实现
& access control • RBAC: admin, developer, guest • AD/LDAP integration • Policy based image replication • Web UI ( 中文 and English) • Audit and logs • Restful API for integration • Lightweight and easy Replication Service 15 Remote Harbor instance Image Replication between Registry Instances 16 Project Images Policy Image Project Images Initial replication Image Incremental Incremental replication (including image deletion) Image Replication Use Case(1) • Image distribution for large cluster • Load balancing 17 Master – Slave Docker Client push Docker host Docker0 码力 | 37 页 | 3.47 MB | 1 年前3运维上海 2017-采用Harbor开源企业级Registry实现高效安全的镜像运维 -张海宁
& access control – RBAC: admin, developer, guest – AD/LDAP integration • Policy based image replication • Vulnerability Scanning • Notary • Web UI • Audit and logs • Restful API for integration Replication Job Services Notary client Remote Harbor Instance Notary Registry V2 Vulnerability Scanning Admin Service Harbor users and partners (selected) 12 Image replication (synchronization) (synchronization) 13 Project Images Policy Image Project Images Initial replication Image incremental replication (including image deletion) Agenda 1 Container Image Basics 2 Project Harbor Introduction0 码力 | 41 页 | 4.94 MB | 1 年前3CNCF Harbor Webinar 2020
Identity integration and role-based access control − Security and vulnerability analysis − Image replication between instances − Internationalization (currently English and Chinese) Operational experience jar Dockerfile Challenges Image replication (synchronization) 17 Project Images Policy Image Project Images Initial replication Image Incremental replication (including image deletion) Shipping synchronized between environments by using Harbor registry. Production Registry images Global Image Replication 19 • Identical images across multiple sites • Image backup • Local access Agenda 1 Containers0 码力 | 39 页 | 2.39 MB | 1 年前3Project Harbor Introduction - Open source trusted cloud native registry
Confidential � ©2018 VMware, Inc. • Isolation • Access Control • Vulnerability • Content Trust • Replication • Control Policy SECURITY DISTRIBUTION RELIABILITY DEPLOYMENT OVERVIEW • HA Supporting • Helm VMware, Inc. Replication Policy DISTRIBUTION ���� • �������� • ������� • ������� • ���� ���� Image Replication • ���� • ���� • ���� • ����� • ������ ���� Initial Replication Incremental Docker Distribution Helm Chart Repository Asynchronization Signature Vulnerability Scanning Replication Service Level Agreement (Authorization) SLA: Tenant Mapping (Project) SLA: Flow Control Log0 码力 | 36 页 | 12.65 MB | 1 年前3Project Harbor Introduction - Open source trusted cloud native registry
Confidential � ©2018 VMware, Inc. • Isolation • Access Control • Vulnerability • Content Trust • Replication • Control Policy SECURITY DISTRIBUTION RELIABILITY DEPLOYMENT OVERVIEW • HA Supporting • Helm VMware, Inc. Replication Policy DISTRIBUTION ���� • �������� • ������� • ������� • ���� ���� Image Replication • ���� • ���� • ���� • ����� • ������ ���� Initial Replication Incremental Docker Distribution Helm Chart Repository Asynchronization Signature Vulnerability Scanning Replication Service Level Agreement (Authorization) SLA: Tenant Mapping (Project) SLA: Flow Control Log0 码力 | 36 页 | 12.65 MB | 1 年前3Harbor Deep Dive - Open source trusted cloud native registry
capabilities • Batch operations Restful API • Complete API for integration • Swagger API doc Replication • Multiple filters support • Schedule, immediate and manual trigger Access Control • RBAC0 码力 | 15 页 | 8.40 MB | 1 年前3采用开源Harbor Registry实现高效安全的容器镜像运维
Browser Auth UI DB AD / LDAP Core Service Log Collector Replication Job Services Notary client Remote Harbor Instance Notary Registry V2 Vulnerability0 码力 | 29 页 | 3.97 MB | 1 年前3
共 7 条
- 1