diff --git a/README.md b/README.md index 2871f95..b46d44e 100644 --- a/README.md +++ b/README.md @@ -86,6 +86,7 @@ their default values. | `s3.encrypt` | Store images in encrypted format | `nil` | | `s3.secure` | Use HTTPS | `nil` | | `s3.forcepathstyle` | Use path-style addressing, needed for some s3 compatible storage (minio) | `nil` | +| `s3.insecureSkipVerify` | Allows connection to s3 storage using TLS with untrusted/self-signed certificate | `nil` | | `swift.authurl` | Swift authurl | `nil` | | `swift.container` | Swift container | `nil` | | `proxy.enabled` | If true, registry will function as a proxy/mirror | `false` | diff --git a/templates/_helpers.tpl b/templates/_helpers.tpl index 5a754fb..b5d75db 100644 --- a/templates/_helpers.tpl +++ b/templates/_helpers.tpl @@ -108,6 +108,11 @@ We truncate at 63 chars because some Kubernetes name fields are limited to this value: {{ .Values.s3.forcepathstyle | quote }} {{- end -}} +{{- if .Values.s3.insecureSkipVerify }} +- name: REGISTRY_STORAGE_S3_SKIPVERIFY + value: {{ .Values.s3.insecureSkipVerify | quote }} +{{- end -}} + {{- else if eq .Values.storage "swift" }} - name: REGISTRY_STORAGE_SWIFT_AUTHURL value: {{ required ".Values.swift.authurl is required" .Values.swift.authurl }} diff --git a/values.yaml b/values.yaml index 38f32cb..a04d92e 100644 --- a/values.yaml +++ b/values.yaml @@ -105,6 +105,7 @@ secrets: # encrypt: false # secure: true # forcepathstyle: true +# insecureSkipVerify: true # Options for swift storage type: # swift: