ARTIFACTORY:通过IAM Role将ARTIFACTORY连接到S3 Bucket
先决条件:
Artifactory v7。xdeployed on AWS EKS Cluster
Artifactory舵图
AWS S3桶
步骤:
1.为您的集群创建一个IAM OIDC提供者:
2.创建类型为“Web identity”的IAM角色:
3.通过这些值关联IAM角色和服务帐户。Artifactory舵图yaml:
serviceAccount:
创建:真
注释:
eks.amazonaws.com/role-arn:攻击:aws:我::< ACCOUNT_ID >:角色/ < IAM_ROLE_NAME >
4.使用这些值配置binarstore .xml。Artifactory舵图yaml:
artifactory:
持久性:
awsS3V3:
地区:AWS_REGION
bucketName: AWS_BUCKET_NAME
useInstanceCredentials:真
5.重启Artifactory
6.部署Artifact并验证它已上传到S3 Bucket
