ImageRepository.spec
ImageRepositorySpec defines the parameters for scanning an image repository, e.g., `fluxcd/flux`.
| Field / Type | Description |
|---|---|
AccessFrom defines an ACL for allowing cross-namespace references to the ImageRepository object based on the caller's namespace labels. | |
CertSecretRef can be given the name of a secret containing either or both of - a PEM-encoded client certificate (`certFile`) and private key (`keyFile`); - a PEM-encoded CA certificate (`caFile`) and whichever are supplied, will be used for connecting to the registry. The client cert and key are useful if you are authenticating with a certificate; the CA cert is useful if you are using a self-signed server certificate. | |
ExclusionList is a list of regex strings used to exclude certain tags from being stored in the database. | |
image | Image is the name of the image repository |
interval | Interval is the length of time to wait between scans of the image repository. |
SecretRef can be given the name of a secret containing credentials to use for the image registry. The secret should be created with `kubectl create secret docker-registry`, or the equivalent. | |
serviceAccountName | ServiceAccountName is the name of the Kubernetes ServiceAccount used to authenticate the image pull if the service account has attached pull secrets. |
suspend | This flag tells the controller to suspend subsequent image scans. It does not apply to already started scans. Defaults to false. |
timeout | Timeout for image scanning. Defaults to 'Interval' duration. |