Configuring a private storage endpoint on Azure
You can configure the Image Registry Operator to use a private Azure storage endpoint so that registry storage is not exposed through a public-facing endpoint.
You can leverage the Image Registry Operator to use private endpoints on Azure, which enables seamless configuration of private storage accounts when Red Hat OpenShift Container Platform is deployed on private Azure clusters. This allows you to deploy the image registry without exposing public-facing storage endpoints.
|
|
Do not configure a private storage endpoint on Microsoft Azure Red Hat OpenShift (ARO), because the endpoint can put your Microsoft Azure Red Hat OpenShift cluster in an unrecoverable state. |
You can configure the Image Registry Operator to use private storage endpoints on Azure in one of two ways:
-
By configuring the Image Registry Operator to discover the VNet and subnet names
-
With user-provided Azure Virtual Network (VNet) and subnet names