compliantkubernetes-apps icon indicating copy to clipboard operation
compliantkubernetes-apps copied to clipboard

Harbor networkpolicy blocking replication

Open viktor-f opened this issue 2 years ago • 0 comments

Describe the bug The harbor networkpolicies do not have any config options to allow communication with other container registries, e.g. for replicating images. At least core and registry should have an option to allow egress traffic to other registries, but testing is needed to see if other components also need access. They currently have config for object storage, but I do not think that is intended to be used for this.

To Reproduce Steps to reproduce the behavior:

  1. Enable network policies for harbor
  2. Try to set up replication from another registry
  3. See error about timeout

Expected behavior There is config to allow traffic to other registries (list of IPs and ports).

Screenshots

Version (add all relevant versions):

  • Compliant kubernetes apps version v0.26.3

Additional context

viktor-f avatar Nov 18 '22 15:11 viktor-f