Uploaded image for project: 'Artifactory Binary Repository'
  1. Artifactory Binary Repository
  2. RTFACT-18091

Docker Pull for Blocked Artifacts return 404

    XMLWordPrintable

    Details

    • Type: Bug
    • Status: Done
    • Priority: 2 - Critical
    • Resolution: Deferred
    • Affects Version/s: 6.5.9
    • Fix Version/s: None
    • Component/s: Docker
    • Labels:
    • Severity:
      Critical

      Description

      I have configured a policy on Xray to block download for vulnerable artifacts.

       

      The first time I tried to pull a vulnerable docker image for bitnami/elasticsearch:latest, I get error 403 (Access Forbidden). This is working as expected.

      $ docker pull docker.localhost:8081/bitnami/elasticsearch
      Using default tag: latest
      Error response from daemon: unknown: Forbidden

       

      But, for every subsequent pull requests, I get 404 (Image NOT Found). This is not expected as the image is existing, but blocked, due to Xray policy.

      $ docker pull docker.localhost:8081/bitnami/elasticsearch
      Using default tag: latest
      Error response from daemon: manifest for docker.localhost:8081/bitnami/elasticsearch:latest not found

        Attachments

          Activity

            People

            Assignee:
            barh Bar Haim
            Reporter:
            sanjeevk Sanjeev Karani (Inactive)
            Votes:
            0 Vote for this issue
            Watchers:
            5 Start watching this issue

              Dates

              Created:
              Updated:
              Resolved:

                Sync Status

                Connection: RTFACT Sync
                RTMID-18091 -
                SYNCHRONIZED
                • Last Sync Date: