From 28fa07357f753f7d94c7aa6a2ef064467c9acde1 Mon Sep 17 00:00:00 2001 From: vilorij Date: Mon, 15 Feb 2021 14:19:41 +0300 Subject: [PATCH] Update crio.sls (#171) * Update crio.sls * Create crio-registries.conf --- sls/k8s-master/crio.sls | 6 ++++++ sls/k8s-master/files/crio-registries.conf | 25 +++++++++++++++++++++++ 2 files changed, 31 insertions(+) create mode 100644 sls/k8s-master/files/crio-registries.conf diff --git a/sls/k8s-master/crio.sls b/sls/k8s-master/crio.sls index 1548fbd..036a9f7 100644 --- a/sls/k8s-master/crio.sls +++ b/sls/k8s-master/crio.sls @@ -10,6 +10,12 @@ - require: - pkg: k8s_deps +/etc/containers/registries.conf: + file.managed: + - source: salt://{{ slspath }}/files/crio-registries.conf + - require: + - pkg: k8s_deps + /etc/crictl.yaml: file.managed: - source: salt://{{ slspath }}/files/crictl.yaml diff --git a/sls/k8s-master/files/crio-registries.conf b/sls/k8s-master/files/crio-registries.conf new file mode 100644 index 0000000..46ee5b5 --- /dev/null +++ b/sls/k8s-master/files/crio-registries.conf @@ -0,0 +1,25 @@ +# This is a system-wide configuration file used to +# keep track of registries for various container backends. +# It adheres to TOML format and does not support recursive +# lists of registries. + +# The default location for this configuration file is /etc/containers/registries.conf. + +# The only valid categories are: 'registries.search', 'registries.insecure', +# and 'registries.block'. + +[registries.search] +registries = ['docker.io'] + +# If you need to access insecure registries, add the registry's fully-qualified name. +# An insecure registry is one that does not have a valid SSL certificate or only does HTTP. +[registries.insecure] +registries = [] + + +# If you need to block pull access from a registry, uncomment the section below +# and add the registries fully-qualified name. +# +# Docker only +[registries.block] +registries = []