https://github.com/goharbor/harbor/blob/master/docs/configure_https.mdhtml
./install.sh --with-notary git
開啓https後,客戶端需把ca.crt 複製到 /etc/docker/certs.d/domain.com(或ip)/ 和$HOME/.docker/tls/domain.com(ip):4443/
github
若是要啓用內容信任以確保圖像已簽名,請在推送或拉取任何圖像以前在命令行中設置兩個環境變量 參考: https://github.com/goharbor/harbor/blob/master/docs/user_guide.md#content-trust
docker
export DOCKER_CONTENT_TRUST=1 export DOCKER_CONTENT_TRUST_SERVER=https://ip:4443
docker build --disable-content-trust=false -t xxx
.請參閱Docker的文檔:https://docs.docker.com/engine/security/trust/content_trust/dom