Kubernetes pulls images from the container registry when scheduling the workloads.
For private projects the cluster needs credentials, supplied as an image pull secret linked to a previously created robot account.
1) Create the pull secret
kubectl create secret docker-registry secret-name \
--docker-server=registry.europeanweather.cloud \
--docker-username='robot$myproject+robotname' \
--docker-password='<robot-token>' \
-n namespace
2) Reference the image and secret in a Pod/Deployment
apiVersion: v1
kind: Pod
metadata:
name: myapp
spec:
containers:
- name: myapp
image: registry.europeanweather.cloud/myproject/myapp:1.4.0
imagePullSecrets:
- name: secret-name