Akihiro Suda
|
9c3cca2ce0
|
docs: clarify availability of optional features
Signed-off-by: Akihiro Suda <akihiro.suda.cz@hco.ntt.co.jp>
|
2022-03-25 18:53:37 +09:00 |
Akihiro Suda
|
caaf071b0d
|
Add `nerdctl image (encrypt|decrypt) SRC DST`
Encrypt:
openssl genrsa -out mykey.pem
openssl rsa -in mykey.pem -pubout -out mypubkey.pem
nerdctl image encrypt --recipient=jwe:mypubkey.pem --platform=linux/amd64,linux/arm64 foo example.com/foo:encrypted
nerdctl push example.com/foo:encrypted
Decrypt:
nerdctl pull --unpack=false example.com/foo:encrypted
nerdctl decrypt --key=mykey.pem example.com/foo:encrypted foo:decrypted
See also ./docs/ocicrypt.md
Signed-off-by: Akihiro Suda <akihiro.suda.cz@hco.ntt.co.jp>
|
2021-11-02 11:29:55 +09:00 |
Akihiro Suda
|
a7c7dcd285
|
docs/ocicrypt.md: update for containerd 1.5
The config has been enabled by default since containerd 1.5.
(containerd PR 5135)
Signed-off-by: Akihiro Suda <akihiro.suda.cz@hco.ntt.co.jp>
|
2021-08-20 17:58:07 +09:00 |
Akihiro Suda
|
22b86372c7
|
support ocicrypt
See `./docs/ocicrypt.md`
Fix #61
Signed-off-by: Akihiro Suda <akihiro.suda.cz@hco.ntt.co.jp>
|
2021-03-09 03:38:30 +09:00 |