Unable to pull images from internal harbor due to missing additional trusted CA certificate
search cancel

Unable to pull images from internal harbor due to missing additional trusted CA certificate

book

Article ID: 406534

calendar_today

Updated On:

Products

Tanzu Kubernetes Runtime

Issue/Introduction

In the air-gap environment, the TKC/VKS is unable to pull images from internal harbor

Environment

vSphere with Tanzu

Cause

The additional trusted CA certificate is missing in TKC

Resolution

If using TKC, follow the doc to add trusted CA into cluster

https://techdocs.broadcom.com/us/en/vmware-cis/vsphere/vsphere-supervisor/8-0/using-tkg-service-with-vsphere-supervisor/provisioning-tkg-service-clusters/using-the-tanzukubernetescluster-v1alpha3-api/v1alpha3-example-tkc-with-additional-trusted-ca-certificates-for-ssl-tls.html

If using Cluster, follow the doc to add trusted CA into cluster

https://techdocs.broadcom.com/us/en/vmware-cis/vsphere/vsphere-supervisor/8-0/using-tkg-service-with-vsphere-supervisor/provisioning-tkg-service-clusters/using-the-cluster-v1beta1-api/v1beta1-example-cluster-with-additional-trusted-ca-certificates-for-ssl-tls.html