Skip to content

NimTechnology

Trình bày các công nghệ CLOUD một cách dễ hiểu.

  • Kubernetes & Container
    • Docker
    • Kubernetes
      • Ingress
    • Helm Chart
    • Isito-EnvoyFilter
    • Apache Kafka
      • Kafka
      • Kafka Connect
      • Lenses
    • Vault
    • Longhorn – Storage
    • VictoriaMetrics
    • MetalLB
    • Kong Gateway
  • CI/CD
    • ArgoCD
    • ArgoWorkflows
    • Spinnaker
    • Jenkins
    • Harbor
    • TeamCity
    • Git
      • Bitbucket
  • Coding
    • Terraform
      • GCP – Google Cloud
      • AWS – Amazon Web Service
    • Golang
    • Laravel
    • Python
    • Jquery & JavaScript
    • Selenium
  • Log & Monitor
    • DataDog
    • Prometheus
    • Grafana
    • ELK
      • Kibana
      • Logstash
  • BareMetal
    • NextCloud
  • Toggle search form

[AWS] Pull docker images from the other ECR

Posted on October 23, 2022October 23, 2022 By nim No Comments on [AWS] Pull docker images from the other ECR

Như hình của bên trên bạn có 2 account aws A và account aws B
==> Bạn muốn Account AWS B có thể pull image từ account aws A

Chúng ta sẽ set permission trên từng image để cho phép Account AWS B có thể pull image từ account aws A

Đi vào image mà bạn muốn chp phép replication.
{
  "Version": "2012-10-17",
  "Statement": [
    {
      "Sid": "AllowPushPull",
      "Effect": "Allow",
      "Principal": {
        "AWS": "arn:aws:iam::account-id:root"
      },
      "Action": [
        "ecr:GetDownloadUrlForLayer",
        "ecr:BatchGetImage",
        "ecr:BatchCheckLayerAvailability",
        "ecr:PutImage",
        "ecr:InitiateLayerUpload",
        "ecr:UploadLayerPart",
        "ecr:CompleteLayerUpload"
      ]
    }
  ]
}

Ok giờ bạn đừng Ở User B và login vào ECR của account

aws sts get-caller-identity --profile fedramp-dev-mdcl-nim-engines
{
    "UserId": "AIDA3RZ3BTJETEXT5QBK6",
    "Account": "794155915849",
    "Arn": "arn:aws:iam::794155915849:user/nimtechnology"
}

aws ecr get-login-password --region <regionID> --profile <profileName> | docker login --username AWS --password-stdin <aws_account_id>.dkr.ecr.<regionID>.amazonaws.com

example:
aws ecr get-login-password --region us-east-1 --profile fedramp-dev-mdcl-nim-engines | docker login --username AWS --password-stdin 250887682577.dkr.ecr.us-east-1.amazonaws.com

Reference Links:
https://aws.amazon.com/blogs/containers/cross-region-replication-in-amazon-ecr-has-landed/

AWS - Amazon Web Service

Post navigation

Previous Post: [Harbor] Configure the replications on Harbor
Next Post: [Chartmuseum] Build yourself a Helm Chart Repository server

More Related Articles

[AWS] Pull images from ECR AWS - Amazon Web Service
[EKS]networkPlugin cni failed to set up pod “pod—xxxxx” network: add cmd: failed to assign an IP address to container AWS - Amazon Web Service
[AWS] Deploying Redis on AWS AWS - Amazon Web Service
[AWS] Solutions Architect Professional: Lesson 2 – Security AWS - Amazon Web Service
[Terraform] – Terraform Beginner – Lesson 2: Working with Terraform. AWS - Amazon Web Service
[EKS] Checking your EKS cluster that is working efficiently. AWS - Amazon Web Service

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Tham Gia Group DevOps nhé!
Để Nim có nhiều động lực ra nhiều bài viết.
Để nhận được những thông báo mới nhất.

Recent Posts

  • [Prometheus/Grafana] Install Prometheus and Grafana on ubuntu. March 27, 2023
  • [Kong Gateway] WebSocket connection failed March 26, 2023
  • [Nextcloud] Can’t download files to have a size bigger than 2Gi on NextCloud – RaspBerry March 24, 2023
  • [Datadog] Using DataDog to monitor all services on kubernetes March 19, 2023
  • [Metrics Server] Failed to make webhook authorizer request: the server could not find the requested resource March 17, 2023

Archives

  • March 2023
  • February 2023
  • January 2023
  • December 2022
  • November 2022
  • October 2022
  • September 2022
  • August 2022
  • July 2022
  • June 2022
  • May 2022
  • April 2022
  • March 2022
  • February 2022
  • January 2022
  • December 2021
  • November 2021
  • October 2021
  • September 2021
  • August 2021
  • July 2021
  • June 2021

Categories

  • BareMetal
    • NextCloud
  • CI/CD
    • ArgoCD
    • ArgoWorkflows
    • Git
      • Bitbucket
    • Harbor
    • Jenkins
    • Spinnaker
    • TeamCity
  • Coding
    • Golang
    • Jquery & JavaScript
    • Laravel
    • Python
    • Selenium
    • Terraform
      • AWS – Amazon Web Service
      • GCP – Google Cloud
  • Kubernetes & Container
    • Apache Kafka
      • Kafka
      • Kafka Connect
      • Lenses
    • Docker
    • Helm Chart
    • Isito-EnvoyFilter
    • Kong Gateway
    • Kubernetes
      • Ingress
    • Longhorn – Storage
    • MetalLB
    • Vault
    • VictoriaMetrics
  • Log & Monitor
    • DataDog
    • ELK
      • Kibana
      • Logstash
    • Grafana
    • Prometheus
  • Uncategorized
  • Admin

Copyright © 2023 NimTechnology.