zot troubleshooting

This commit is contained in:
Brad Stein 2025-09-08 22:25:41 -05:00
parent 1ee60d9534
commit 47a73af27e
5 changed files with 14 additions and 3 deletions

View File

@ -17,7 +17,7 @@ data:
"http": { "http": {
"address": "0.0.0.0", "address": "0.0.0.0",
"port": "5000", "port": "5000",
"auth": { "htpasswd": { "path": "/etc/zot/htpasswd" } }, "auth": { "htpasswd": { "path": "/etc/zot/htpasswd", "realm": "zot-registry" } },
"accessControl": { "accessControl": {
"repositories": { "repositories": {
"**": { "**": {
@ -34,7 +34,7 @@ data:
} }
} }
}, },
"log": { "level": "info" }, "log": { "level": "debug" },
"extensions": { "extensions": {
"ui": { "enable": true }, "ui": { "enable": true },
"search": { "enable": true }, "search": { "enable": true },

View File

@ -8,6 +8,7 @@ metadata:
cert-manager.io/cluster-issuer: letsencrypt-prod cert-manager.io/cluster-issuer: letsencrypt-prod
traefik.ingress.kubernetes.io/router.entrypoints: websecure traefik.ingress.kubernetes.io/router.entrypoints: websecure
traefik.ingress.kubernetes.io/router.tls: "true" traefik.ingress.kubernetes.io/router.tls: "true"
traefik.ingress.kubernetes.io/router.tls.options: zot-h1only@kubernetescrd
traefik.ingress.kubernetes.io/router.middlewares: zot-zot-headers@kubernetescrd,zot-zot-buffering@kubernetescrd traefik.ingress.kubernetes.io/router.middlewares: zot-zot-headers@kubernetescrd,zot-zot-buffering@kubernetescrd
spec: spec:
ingressClassName: traefik ingressClassName: traefik

View File

@ -9,4 +9,5 @@ resources:
- service.yaml - service.yaml
- ingress.yaml - ingress.yaml
- middleware.yaml - middleware.yaml
- tlsoptions.yaml

View File

@ -1,4 +1,4 @@
# services/zot/middlewares.yaml # services/zot/middleware.yaml
apiVersion: traefik.io/v1alpha1 apiVersion: traefik.io/v1alpha1
kind: Middleware kind: Middleware
metadata: metadata:

View File

@ -0,0 +1,9 @@
# services/zot/tlsoptions.yaml
apiVersion: traefik.io/v1alpha1
kind: TLSOption
metadata:
name: h1only
namespace: zot
spec:
alpnProtocols:
- http/1.1