Remove no longer needed files
Some checks are pending
Some checks are pending
This commit is contained in:
parent
45f4588722
commit
ce85fde17a
2 changed files with 0 additions and 72 deletions
|
@ -1,17 +0,0 @@
|
||||||
version: 0.1
|
|
||||||
log:
|
|
||||||
level: info
|
|
||||||
storage:
|
|
||||||
filesystem:
|
|
||||||
rootdirectory: /var/lib/registry
|
|
||||||
delete:
|
|
||||||
enabled: true
|
|
||||||
http:
|
|
||||||
addr: :5000
|
|
||||||
tls:
|
|
||||||
certificate: /etc/docker/registry/ssl/registry.crt
|
|
||||||
key: /etc/docker/registry/ssl/registry.key
|
|
||||||
headers:
|
|
||||||
X-Content-Type-Options: [nosniff]
|
|
||||||
X-Frame-Options: [DENY]
|
|
||||||
X-XSS-Protection: [1; mode=block]
|
|
|
@ -1,55 +0,0 @@
|
||||||
events {
|
|
||||||
worker_connections 1024;
|
|
||||||
}
|
|
||||||
|
|
||||||
http {
|
|
||||||
upstream registry_ui {
|
|
||||||
server registry-ui:80;
|
|
||||||
}
|
|
||||||
|
|
||||||
upstream registry_api {
|
|
||||||
server registry:5000;
|
|
||||||
}
|
|
||||||
|
|
||||||
server {
|
|
||||||
listen 443 ssl;
|
|
||||||
server_name YOUR_CI_CD_IP;
|
|
||||||
|
|
||||||
ssl_certificate /etc/nginx/ssl/registry.crt;
|
|
||||||
ssl_certificate_key /etc/nginx/ssl/registry.key;
|
|
||||||
ssl_protocols TLSv1.2 TLSv1.3;
|
|
||||||
ssl_ciphers HIGH:!aNULL:!MD5;
|
|
||||||
|
|
||||||
# Registry API - require auth for non-GET requests only
|
|
||||||
location /v2/ {
|
|
||||||
# Require authentication for all non-GET requests (push, delete, etc.)
|
|
||||||
limit_except GET {
|
|
||||||
auth_basic "Registry Realm";
|
|
||||||
auth_basic_user_file /etc/nginx/auth/auth.htpasswd;
|
|
||||||
}
|
|
||||||
|
|
||||||
# Pass through to registry
|
|
||||||
proxy_pass https://registry_api;
|
|
||||||
proxy_set_header Host $host;
|
|
||||||
proxy_set_header X-Real-IP $remote_addr;
|
|
||||||
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
|
|
||||||
proxy_set_header X-Forwarded-Proto $scheme;
|
|
||||||
proxy_connect_timeout 30s;
|
|
||||||
proxy_send_timeout 30s;
|
|
||||||
proxy_read_timeout 30s;
|
|
||||||
proxy_ssl_verify off;
|
|
||||||
}
|
|
||||||
|
|
||||||
# Proxy registry UI requests
|
|
||||||
location / {
|
|
||||||
proxy_pass http://registry_ui;
|
|
||||||
proxy_set_header Host $host;
|
|
||||||
proxy_set_header X-Real-IP $remote_addr;
|
|
||||||
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
|
|
||||||
proxy_set_header X-Forwarded-Proto $scheme;
|
|
||||||
proxy_connect_timeout 30s;
|
|
||||||
proxy_send_timeout 30s;
|
|
||||||
proxy_read_timeout 30s;
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
Loading…
Add table
Reference in a new issue