How to add additional CA trust for Quay in RHOCP 4

Solution Verified - Updated -

Issue

  • Pod deployment fails when running the "oc new-app" command while an image is pulled from QuayRegistry installed inside the same OpenShift cluster:
        Normal   Pulling         23m (x4 over 25m)    kubelet            Pulling image "registry-quay-quay-enterprise.apps.classroom.example.com/httpd-24:1-191a"
        Warning  Failed          23m (x4 over 25m)    kubelet            Failed to pull image "registry-quay-quay-enterprise.apps.classroom.example.com/httpd-24:1-191a": rpc error: code = Unknown desc = pinging container registry registry-quay-quay-enterprise.apps.classroom.example.com: Get "https://registry-quay-quay-enterprise.apps.classroom.example.com/v2/": x509: certificate signed by unknown authority
        Warning  Failed          23m (x4 over 25m)    kubelet            Error: ErrImagePull
        Normal   BackOff         12s (x110 over 25m)  kubelet            Back-off pulling image "registry-quay-quay-enterprise.apps.classroom.example.com/httpd-24:1-191a"

Environment

  • Red Hat Quay (Quay)
    • 3
  • Red Hat OpenShift Container Platform (RHOCP)
    • 4

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content