Nexus:Docker: Difference between revisions

From Chorke Wiki
Jump to navigation Jump to search
Line 104: Line 104:
==Cache or Mirror==
==Cache or Mirror==
<source lang="properties">
<source lang="properties">
mkdir -p /etc/docker/registry
cat <<EOF > /etc/docker/registry/config.yml
cat <<EOF > /etc/docker/registry/config.yml
proxy:
proxy:

Revision as of 02:40, 3 January 2021

Recipe Types:
──────────────────────────────────────────
nexus/repository/recipe/types
─┬────────────────────────────────────────
 ├─ group
 ├─ proxy
 └─ host
Repositories:
──────────────────────────────────────────
https://cdn.chorke.org/nexus/repository/
─┬────────────────────────────────────────
 ├─ docker-registry/   [proxy]
 ├─ docker-private/    [host ]
 └─ docker-group/      [group]

Blob Store

Admin   : https://cdn.chorke.org/nexus/#admin/repository/blobstores
Path    : /nexus-data/blobs/docker-registry
Name    : docker-registry
Admin   : https://cdn.chorke.org/nexus/#admin/repository/blobstores
Path    : /nexus-data/blobs/docker-private
Name    : docker-private
Admin   : https://cdn.chorke.org/nexus/#admin/repository/blobstores
Path    : /nexus-data/blobs/docker-group
Name    : docker-group

Repository

Admin   : https://cdn.chorke.org/nexus/#admin/repository/repositories
HTTP    : 8083
V1 API  : enable
Deploy  : Allow redeploy
Storage : docker-private
Name    : docker-private
Admin   : https://cdn.chorke.org/nexus/#admin/repository/repositories
USE HUB : enable
proxy   : https://registry-1.docker.io
Storage : docker-registry
Name    : docker-registry
Admin   : https://cdn.chorke.org/nexus/#admin/repository/repositories
HTTP    : 8082
Members : docker-private, docker-registry
Storage : docker-group
Name    : docker

Security

vim /etc/docker/daemon.json

{
  "insecure-registries": [
    "hub.chorke.org:8082",
    "reg.chorke.org:8083"
  ],
  "disable-legacy-registry": true
}

vim ~/.docker/config.json

{
  "auths": {
    "hub.chorke.org:8082": {
      "auth": "YWNhZGVtaWE6c2FkYXFhaCE="
    },
    "reg.chorke.org:8083": {
      "auth": "YWNhZGVtaWE6c2FkYXFhaCE="
    }
}

docker login  hub.chorke.org -u academia -p sadaqah!
docker login  hub.chorke.org -u academia
docker logout hub.chorke.org

docker pull hub.chorke.org/httpd:2.4-alpine
docker tag academia-http-server:1.0.0 reg.chorke.org/academia-http-server:1.0.0
docker push reg.chorke.org/academia-http-server:1.0.0

Networking

cat <<EOF > /etc/docker/daemon.json
{
    "bip"  : "10.20.13.1/24",
    "mtu"  : 1500,
    "dns"  : [
        "10.19.83.100",
        "10.19.83.1"
    ],
    "debug": true
}
EOF

Cache or Mirror

mkdir -p /etc/docker/registry
cat <<EOF > /etc/docker/registry/config.yml
proxy:
  remoteurl: https://hub.chorke.org
  username: academia
  password: sadaqah!
EOF

References