Container images
Kubernetes and containerd
Give the cluster a pull secret made from a token.
Use a token made for the cluster, not your personal one. Ask an admin to place it in the right application and environment.
kubectl create secret docker-registry repo-pull \
--docker-server=packages.example.com \
--docker-username=storefront-prod \
--docker-password="$REPO_TOKEN"
deployment.yaml
spec:
template:
spec:
imagePullSecrets:
- name: repo-pull
containers:
- name: web
image: packages.example.com/nginx:stable-alpine
k3s and plain containerd
/etc/rancher/k3s/registries.yaml
configs:
"packages.example.com":
auth:
username: storefront-prod
password: <your token>