A private registry to detect vulnerabilities in images
Store and distribute container images in a fully managed private registry. Push private images to conveniently run them in the IBM Cloud® Kubernetes Service and other runtime environments. Images are checked for security issues so you can make informed decisions about your deployments.
Different teams or projects can have their own isolated namespaces within the same registry. It allows for logical separation of images, access control, and billing, making it ideal for organizations managing many containerized applications.
Vulnerability Advisor provides recommendations that are specific to the operating system to fix potential vulnerabilities and protect your containers from being compromised.
The image registry is pre-integrated with IBM Cloud® Kubernetes Service and Red Hat® OpenShift® on IBM Cloud® to accelerate deployment of your applications.
Fine-grained access controls are available to users within your IBM Cloud® account, together with support for cryptographic image integrity verification by using Red Hat® signatures.
IBM Cloud® Container Registry supports the Open Container Initiative - OCI ( link resides outside ibm.com) distribution specification so that you can use common tools such as Docker and Skopeo to interact with your images.
Manage your costs with automated retention policies to keep only the images that you need and delete old or outdated images.
Set up your own image namespace in a multi-tenant, highly available, scalable, private registry that is hosted and managed by IBM.
Encrypted communication between clients and the registry server, providing an additional layer of security. Data at rest is also encrypted, ensuring that your container images are protected from unauthorized access.