Sign inSign up

djordjelukic1639080/cbx-example-docker-auth:1

Manifest digest

sha256:c716c1b57b1ea47dc7de447519a258c707ef21f559db60aa6f97d7d787892a77

Last pushed

about 9 hours by djordjelukic1639080

Type

Sandbox Kit

Manifest digest

sha256:c716c1b57b1ea47dc7de447519a258c707ef21f559db60aa6f97d7d787892a77

yaml
schemaVersion: "3"
displayName: Host Docker authentication
description: Authenticate registry requests with a host-only Docker login
version: 1.0.0
kind: mixin
provides:
    - [email protected]
capabilities:
    - type: io.cbx/docker-auth@1
      config:
        registries:
            - ${{ kit.args.docker_registry }}
      description: Authenticate token requests without exposing the host Docker login
    - type: com.docker.sandbox/network-policy@2
      config:
        runtime:
            allow:
                - registry-1.docker.io
                - auth.docker.io
                - production.cloudflare.docker.com
                - production.cloudfront.docker.com
                - docker-images-prod.6aa30f8b08e16409b46e0173d6de2f56.r2.cloudflarestorage.com
                - ghcr.io
                - pkg-containers.githubusercontent.com
args:
    docker_registry:
        default: docker.io
        description: Registry authenticated by the host gateway
        enum:
            - docker.io
            - ghcr.io