Skip to content

Generate TLS on boot #164

@AkihiroSuda

Description

@AkihiroSuda

The dind daemon entrypoint script should support generating TLS keys for the daemon and the clients, and set appropriate dockerd flags when an environment variable like DIND_TLS_SAN is specified.

e.g.

$ docker run -d --privileged --name some-docker -e DIND_TLS_SAN=DNS:docker,DNS:localhost docker:dind
$ docker cp some-docker:/certs/for-client ./certs-for-client
$ docker run --rm --link some-docker:docker -v $(pwd)/certs-for-client:/root/.docker -e DOCKER_HOST=tcp://docker:2376 docker info

Metadata

Metadata

Assignees

No one assigned

    Labels

    RequestRequest for image modification or feature

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions