Red Hat Quay Security scanner not working with error "disallowed by policy"
Issue
- Red Hat Quay Security scanner cannot scan images and report vulnerability scores in disconnected environments.
-
Clair logs showing errors containing:
dial tcp <ip address>:<port>: address tcp4!<ip address>:<port.: disallowed by policy","time":"<date>","message":"error during scan"
Environment
- Red Hat Quay 3
- Disconnected/Airgapped deployment
- Network assignment not from RFC1918 (IPv4) IP blocks or RFC4193 (IPv6)
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.