Kubernetes pulls images from the container registry when scheduling the workloads. 

For private projects the cluster needs credentials, supplied as an image pull secret linked to a previously created robot account.

1) Create the pull secret

kubectl create secret docker-registry secret-name \ 
     --docker-server=registry.europeanweather.cloud \
     --docker-username='robot$myproject+robotname' \
     --docker-password='<robot-token>'  \
     -n namespace

2) Reference the image and secret in a Pod/Deployment

apiVersion: v1
kind: Pod
metadata:
  name: myapp
spec:
  containers:
    - name: myapp
      image: registry.europeanweather.cloud/myproject/myapp:1.4.0
  imagePullSecrets:
    - name: secret-name


  • No labels