Skip to content

Setup harbor on podman using ansible #17268

Answered by akramelnouby
akramelnouby asked this question in Q&A
Discussion options

You must be logged in to vote

Notary will likely fail because RH (via Podman) does not support Docker Content Trust/Notary v1 signatures. Instead, RH has a technically-open-but-not-standardized GPG-based signing method, with Harbor doesn't offer support for.

I had been hoping that Notary v2 would take off, but it's moving very slowly. In the meantime, sigstore/cosign has taken off, and Harbor added support for cosign in 2.5.0. Cosign seems to be the frontrunner at the moment, so this is a positive development.

Thank you for that information. We will take a look at cosign, and hope it can replace Notary, until Notary v2 will be released and hopefully be available in RHEL/podman.

Replies: 5 comments 2 replies

Comment options

You must be logged in to vote
1 reply
@shawngmc
Comment options

Comment options

You must be logged in to vote
1 reply
@akramelnouby
Comment options

Comment options

You must be logged in to vote
0 replies
Answer selected by akramelnouby
Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
0 replies
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
5 participants