首页 > 解决方案 > AKS 无法使用 letencryptcertificate 从私有注册表中提取 docker 映像

问题描述

当 AKS 尝试从使用 LetsEncrypt 证书保护的私有存储库中提取 docker 映像时,我遇到了 gettix x509 证书问题。如何管理 AKS 中的证书存储以添加我的证书的 CA 等。

标签: azurekubernetesazure-aks

解决方案


  Normal   Scheduled  8m8s                  default-scheduler  Successfully assigned default/proxy-deployment-568646f8d4-7gnnt to aks-default-26787434-vmss000000

Normal Pulling 6m34s (x4 over 8m7s) kubelet Pulling image "my registry/my-image:lts" Warning Failed 6m34s (x4 over 8m7s) kubelet Failed to pull image "my registry/my-image:lts": rpc error: code = Unknown desc = 来自守护进程的错误响应:Get https://my registry/v2/: x509: certificate signed by unknown authority Warning Failed 6m34s (x4 over 8m7s) kubelet Error: ErrImagePull Normal BackOff 6m18s (x6 over 8m7s) kubelet Back-off拉图像“我的注册表/我的图像:lts”警告失败 3m5s(x19 超过 8m7s)kubelet 错误:ImagePullBackOff


推荐阅读