A private registry to detect vulnerabilities in images
Fully managed private registry
Store and distribute container images in a fully managed private registry. Push private images to conveniently run them in the IBM Cloud® Kubernetes Service and other runtime environments. Images are checked for security issues so you can make informed decisions about your deployments.
Different teams or projects can have their own isolated namespaces within the same registry. It allows for logical separation of images, access control, and billing, making it ideal for organizations managing many containerized applications.
Vulnerability Advisor provides recommendations that are specific to the operating system to fix potential vulnerabilities and protect your containers from being compromised.
The image registry is pre-integrated with IBM Cloud® Kubernetes Service and Red Hat® OpenShift® on IBM Cloud® to accelerate deployment of your applications.
Fine-grained access controls are available to users within your IBM Cloud® account, together with support for cryptographic image integrity verification by using Red Hat® signatures.
Container Registry features
Manage your costs with automated retention policies to keep only the images that you need and delete old or outdated images.
Set up your own image namespace in a multi-tenant, highly available, scalable, private registry that is hosted and managed by IBM.
Encrypted communication between clients and the registry server, providing an additional layer of security. Data at rest is also encrypted, ensuring that your container images are protected from unauthorized access.
Container Registry use cases
Install the IBM Cloud Container Registry CLI to use the command line to manage your name spaces and Docker images in the IBM Cloud® private registry.
View information about potential vulnerabilities and the security of images in the IBM Cloud Container Registry public and private repositories with the IBM Cloud console.
Container Registry case studies