cr-repository-type-private

Updated at:

Evaluates whether image repositories in Container Registry are set to private.

Scenarios

Set image repositories in Container Registry to private to reduce security risks while ensuring that normal business operations are not affected.

Risk level

Default risk level: high.

You can change the risk level when you apply this rule.

Compliance evaluation logic

  • If the image repository type is set to private, the evaluation result is compliant.
  • If the image repository type is set to public, the evaluation result is non-compliant. For more information about how to correct the non-compliant configuration, see Non-compliance remediation.

Rule details

Item Description
Rule name cr-repository-type-private
Rule ID cr-repository-type-private
Tag CR,Repository
Automatic remediation Not supported
Trigger type Configuration change
Supported resource type Image repository
Input parameter None

Non-compliance remediation

Set the image repository type in Container Registry to private. For more information, see Create a repository and build images.