Which solution will meet these requirements with the LEAST management overhead?

2 Comments

  1. Barbara
    Author

    I deduce that the answer is:
    Pull images from the public container registry. Publish the images to Amazon Elastic Container Registry (Amazon ECR) repositories with scan on push configured in a centralized AWS account. Use a CI/CD pipeline to deploy the images to different AWS accounts. Use repository policies and identity-based policies to restrict access to which IAM principals and accounts can access the images.

  2. Paul
    Author

    If I’m not mistaken, the answer is:
    Pull images from the public container registry. Publish the images to Amazon Elastic Container Registry (Amazon ECR) repositories with scan on push configured in a centralized AWS account. Use a CI/CD pipeline to deploy the images to different AWS accounts. Use repository policies and identity-based policies to restrict access to which IAM principals and accounts can access the images.

Leave a Reply

Your email address will not be published. Required fields are marked *

5 × one =