Linux/Docker

[Docker] Private Docker Registry๋กœ ์ด๋ฏธ์ง€ ๊ด€๋ฆฌํ•˜๊ธฐ

ํ•˜์งฑ. 2024. 1. 31. 17:49
728x90

Private Docker Registry๋กœ ์ด๋ฏธ์ง€ ๊ด€๋ฆฌํ•˜๊ธฐ


๐Ÿ“ Docker Registry๋ž€?

Docker ์ด๋ฏธ์ง€๋ฅผ ์ €์žฅํ•˜๊ณ  ๊ด€๋ฆฌํ•˜๋Š” ์ค‘์•™ ์ง‘์ค‘ํ˜• ์„œ๋ฒ„ ์‹œ์Šคํ…œ

์ด๋ฏธ์ง€๋ฅผ ์ €์žฅํ•˜๊ณ  ์ด๋ฅผ ํšจ๊ณผ์ ์œผ๋กœ ๊ด€๋ฆฌํ•˜์—ฌ ์—ฌ๋Ÿฌ ํ™˜๊ฒฝ์—์„œ ๋ฐฐํฌํ•˜๊ธฐ ์œ„ํ•œ ๋ชฉ์ 

 

- ์ข…๋ฅ˜

โœ” ๊ณต์‹ Docker Registry (๋„์ปค ํ—ˆ๋ธŒ)

๋„์ปค ํ—ˆ๋ธŒ๋Š” Docker ๊ณต์‹ ์ด๋ฏธ์ง€ ์ €์žฅ์†Œ๋กœ์„œ, ๊ฐœ๋ฐœ์ž๋“ค์ด ์ด๋ฏธ์ง€๋ฅผ ๊ณต์œ ํ•˜๊ณ  ๊ฐ€์ ธ๋‹ค ์‚ฌ์šฉํ•  ์ˆ˜ ์žˆ๋Š” ์ค‘์•™ ์ง‘์ค‘ํ˜• ๋ ˆ์ง€์ŠคํŠธ๋ฆฌ.

 

(๋„์ปค ํ—ˆ๋ธŒ์— ์ด๋ฏธ์ง€ ์—…๋กœ๋“œํ•˜๋Š” ๋ฒ•)

https://thisisyoon.tistory.com/42

 

[Docker] ๋„์ปค ํ—ˆ๋ธŒ์— ์ด๋ฏธ์ง€ ์—…๋กœ๋“œํ•˜๊ธฐ

๋„์ปค ํ—ˆ๋ธŒ์— ์ด๋ฏธ์ง€ ์—…๋กœ๋“œํ•˜๊ธฐ ๐Ÿ“ ๋„์ปค ํ—ˆ๋ธŒ์— ์ €์žฅ์†Œ ์ƒ์„ฑ https://hub.docker.com/ Docker Hub Container Image Library | App Containerization Build and Ship any Application Anywhere Docker Hub is the world's easiest way to create, man

thisisyoon.tistory.com

 

โœ” Private Docker Registry

์กฐ์ง์ด๋‚˜ ํ”„๋กœ์ ํŠธ ํŠน์œ ์˜ ์š”๊ตฌ ์‚ฌํ•ญ์— ๋”ฐ๋ผ Docker ์ด๋ฏธ์ง€๋ฅผ ์ €์žฅํ•˜๊ณ  ๊ด€๋ฆฌํ•˜๊ธฐ ์œ„ํ•ด ๊ตฌ์ถ•๋œ ๋น„๊ณต๊ฐœ Registry.

๋ณด์•ˆ ๋ฐ ์‚ฌ์šฉ์ž ์ง€์ • ์„ค์ •์„ ์ ์šฉํ•˜์—ฌ ๋ฏผ๊ฐํ•œ ์ด๋ฏธ์ง€ ์•ˆ์ „ํ•˜๊ฒŒ ๊ด€๋ฆฌ ๊ฐ€๋Šฅ.

 

๐Ÿ“ Private Docker Registry

- ๋ณด์•ˆ ๊ฐ•ํ™”

์ด๋ฏธ์ง€๋ฅผ ์ž์ฒด์ ์œผ๋กœ ๊ด€๋ฆฌํ•˜๊ณ  ๋ณด์•ˆ ์„ค์ •์„ ๊ฐ•ํ™”ํ•  ์ˆ˜ ์žˆ๋‹ค. HTTS ์‚ฌ์šฉ, ์ธ์ฆ ๋ฐ ์ ‘๊ทผ ์ œ์–ด ๋“ฑ์„ ํ†ตํ•ด ์•ˆ์ „ํ•˜๊ฒŒ ์ด๋ฏธ์ง€ ์ €์žฅ ๊ฐ€๋Šฅ.

- ์ธํ„ฐ๋„ท ์˜์กด์„ฑ ๊ฐ์†Œ

๋„์ปค ํ—ˆ๋ธŒ์˜ ๊ฒฝ์šฐ ์ธํ„ฐ๋„ท์— ์—ฐ๊ฒฐ๋˜์–ด ์žˆ์–ด์•ผ ํ•œ๋‹ค. ์กฐ์ง์ด๋‚˜ ํ”„๋กœ์ ํŠธ ๋‚ด์—์„œ ๋กœ์ปฌ๋กœ ๊ด€๋ฆฌํ•˜๋ฉด ์ธํ„ฐ๋„ท ์†๋„๋‚˜ ๊ฐ€์šฉ์„ฑ๊ณผ ๊ด€๋ จ๋œ ๋ฌธ์ œ ํ•ด๊ฒฐ ๊ฐ€๋Šฅ.

- ์ปค์Šคํ„ฐ ๋งˆ์ด์ง• ๊ฐ€๋Šฅ

์กฐ์ง์ด๋‚˜ ํ”„๋กœ์ ํŠธ ํŠน์ • ์š”๊ตฌ์— ๋งž๊ฒŒ ํ™˜๊ฒฝ ์ปค์Šคํ„ฐ๋งˆ์ด์ง• ๊ฐ€๋Šฅ.

 

๐Ÿ“ ์šฐ๋ถ„ํˆฌ์—์„œ Private Docker Registry ์‚ฌ์šฉํ•˜๊ธฐ

- private-registry์™€ web ui๋ฅผ ์—ฐ๊ฒฐํ•˜์—ฌ ์ƒํƒœ ํ™•์ธ์„ ํ•  ์ˆ˜ ์žˆ๋‹ค.

docker container run -d -p 5000:5000 --restart=always --name registry -v /home/rapa/registry:/var/lib/registry registry
docker run -d -p 8080:8080 --name registry-web --link registry:private -e REGISTRY_URL=http://211.183.3.100:5000/v2 -e REGISTRY_NAME=211.183.3.100:5000 --restart=always hyper/docker-registry-web

 

- ์ด๋ฏธ์ง€ ๋ณ€๊ฒฝ

docker tag yoonhakyoung/rapaeng4:blue 211.183.3.100:5000/rapaeng4:blue
docker tag yoonhakyoung/rapaeng4:blue 211.183.3.100:5000/rapaeng4:green

๋„์ปค ํ—ˆ๋ธŒ โžก๏ธ private-registry

 

- insecure ์ ์šฉ

์ด๋ฏธ์ง€๋ฅผ ์›๊ฒฉ์ง€์— pushํ•  ๊ฒฝ์šฐ ํ•ด๋‹น ์›๊ฒฉ์ง€ ์ฃผ์†Œ๊ฐ€ https๊ฐ€ ์•„๋‹ˆ๋ผ๋ฉด ๋ณด์•ˆ์„ฑ์ด ๋‚ฎ๋‹ค๋ผ๊ณ  ํŒ๋‹จ ํ›„, ํ•ด๋‹น ์—ฐ๊ฒฐ์„ ์ฐจ๋‹จํ•œ๋‹ค.

์ด๋ฅผ ํ•ด๊ฒฐํ•˜๊ธฐ ์œ„ํ•ด insecure์„ ์ ์šฉํ•ด๋ณธ๋‹ค.

sudo vi /etc/docker/daemon.json
{
        "insecure-registries": ["211.183.3.100:5000"]
}
sudo systemctl restart docker

 

728x90