Brian Goff
6444380ea9
Cache immutable URLs and handle outages ( #51 )
...
Cache immutable URLs and handle outages
1. Changes the blob cache to only cache by digest
2. Adds caching for manifests requested by digest
3. Cache but invalidate immediately (after 1s) mutable requests
4. Use invalidated cache (from 3) if the backend is down or 403 unauthorized
2020-10-08 16:18:02 +02:00
ricardop
19cbdfedfc
0.3.0-beta2: don't leak Authorization header from the registry to the redirected destination during @handle_redirects
2020-04-03 15:33:46 +02:00
ricardop
e72389b690
use explicit include for the proxy cache directive.
2020-04-03 14:05:01 +02:00
ricardop
bc0ac351bb
Merge branch 'pull/33'
2020-04-03 13:50:54 +02:00
ricardop
ad75dce3d5
Merge branch 'pull/22'
2020-04-03 13:49:08 +02:00
Ruud Kamphuis
e90d203fc0
Follow redirects and cache them properly
2020-03-23 10:25:41 +01:00
Jonathan Giannuzzi
cd028516c6
Use SNI during the TLS handshake with the upstream
2019-11-21 10:23:46 +01:00
Sebastián Ramírez
f3d2eefc09
✨ Add support for custom cache sizes
2019-09-27 13:44:07 -05:00
Ricardo Pardini
3e71b6fd57
remove some "$" usage in instructions, theres no good way to escape it in nginx literals
...
bump to 0.2.4
2019-01-16 21:43:01 +01:00
Stan Yagolnitser
d8434a02cf
added sanity checks for /setup/systemd route
2018-12-14 12:18:28 -08:00
Stan Yagolnitser
653c4aad54
added route for quicker docker engine setup, just curl /setup | bash
2018-12-12 00:42:40 -08:00
Stan Yagolnitser
a89cf362ad
set nginx DNS configuration from container resolv.conf to allow proxy to operate behind firewall
2018-12-12 00:18:34 -08:00
Ricardo Pardini
7724f3ba15
completely reworked caching, now cache by exception (/blobs/ only essentially)
...
- now only /v2/.../blobs/... URIs are actually cached (together with their redirect catchers)
- /manifests/, /token, and /v2/ are not cached anymore, which should solve a lot of problems
- better messages for /v1 attempts
- fix usage of $connect_host:443 (which is hostname:port and causes errors to be logged) to $connect_addr (which returns an IP:port) in the proxy layer
2018-11-04 16:43:53 +01:00
Ricardo Pardini
8ff06e3dec
add mitmproxy/nginx-debug inspection capabilities
...
- avoid some caching for non-blob urls
2018-11-04 11:23:52 +01:00
ricardop
1486d6920e
err msg, explain the image can simply be missing upstream too
2018-07-04 19:45:33 +02:00
ricardop
dab5f4f1df
fix: add higher map_hash_bucket_size, allowing for more mappings
2018-07-03 11:19:29 +02:00
ricardop
0abd4ca51a
completely reworked into an HTTPS_PROXY-based solution
...
- emit our own certificates
- configurable via ENVs
- generates config dinamically
2018-06-29 01:39:02 +02:00
ricardop
af65390a7f
tweaks for caching; ignore caching headers from upstreams; key cache only by host/path (no params)
2018-06-27 15:18:25 +02:00
ricardop
325dd23ae5
initial commit
2018-06-27 13:08:09 +02:00