mirror of
https://github.com/TecharoHQ/anubis.git
synced 2026-04-10 02:28:45 +00:00
47 lines
1.1 KiB
YAML
47 lines
1.1 KiB
YAML
- name: allow-docker-client
|
|
action: ALLOW
|
|
expression:
|
|
all:
|
|
- path.startsWith("/v2/")
|
|
- userAgent.contains("docker/")
|
|
- userAgent.contains("git-commit/")
|
|
- '"Accept" in headers'
|
|
- headers["Accept"].contains("vnd.docker.distribution")
|
|
- '"Baggage" in headers'
|
|
- headers["Baggage"].contains("trigger")
|
|
|
|
- name: allow-crane-client
|
|
action: ALLOW
|
|
expression:
|
|
all:
|
|
- userAgent.contains("crane/")
|
|
- userAgent.contains("go-containerregistry/")
|
|
|
|
- name: allow-docker-distribution-api-client
|
|
action: ALLOW
|
|
expression:
|
|
all:
|
|
- '"Docker-Distribution-Api-Version" in headers'
|
|
- '!(userAgent.contains("Mozilla"))'
|
|
|
|
- name: allow-go-containerregistry-client
|
|
action: ALLOW
|
|
expression:
|
|
all:
|
|
- path.startsWith("/v2/")
|
|
- userAgent.contains("go-containerregistry/")
|
|
|
|
- name: allow-buildah
|
|
action: ALLOW
|
|
expression:
|
|
all:
|
|
- path.startsWith("/v2/")
|
|
- userAgent.contains("Buildah/")
|
|
|
|
- name: allow-podman
|
|
action: ALLOW
|
|
expression:
|
|
all:
|
|
- path.startsWith("/v2/")
|
|
- userAgent.contains("containers/")
|