Commit Graph

4 Commits

Author SHA1 Message Date
Akihiro Suda 9c3cca2ce0
docs: clarify availability of optional features
Signed-off-by: Akihiro Suda <akihiro.suda.cz@hco.ntt.co.jp>
2022-03-25 18:53:37 +09:00
Akihiro Suda caaf071b0d
Add `nerdctl image (encrypt|decrypt) SRC DST`
Encrypt:
  openssl genrsa -out mykey.pem
  openssl rsa -in mykey.pem -pubout -out mypubkey.pem
  nerdctl image encrypt --recipient=jwe:mypubkey.pem --platform=linux/amd64,linux/arm64 foo example.com/foo:encrypted
  nerdctl push example.com/foo:encrypted

Decrypt:
  nerdctl pull --unpack=false example.com/foo:encrypted
  nerdctl decrypt --key=mykey.pem example.com/foo:encrypted foo:decrypted

See also ./docs/ocicrypt.md

Signed-off-by: Akihiro Suda <akihiro.suda.cz@hco.ntt.co.jp>
2021-11-02 11:29:55 +09:00
Akihiro Suda a7c7dcd285
docs/ocicrypt.md: update for containerd 1.5
The config has been enabled by default since containerd 1.5.
(containerd PR 5135)

Signed-off-by: Akihiro Suda <akihiro.suda.cz@hco.ntt.co.jp>
2021-08-20 17:58:07 +09:00
Akihiro Suda 22b86372c7
support ocicrypt
See `./docs/ocicrypt.md`

Fix #61

Signed-off-by: Akihiro Suda <akihiro.suda.cz@hco.ntt.co.jp>
2021-03-09 03:38:30 +09:00