Define the registries from which images can be pulled for deployment in your managed namespaces.

Using VMware Tanzu Mission Control, you can make the deployments to namespaces in your clusters more secure by restricting the image registries from which images can be pulled, as well as the images that can be pulled from a registry. By default, Tanzu Mission Control does not impose any such restriction, and allows you to manage image registry restrictions at the organizational level and at the workspace level.

Each namespace and workspace can be protected by an image registry policy that defines the registries from which an image can be pulled, and these policies are inherited down through the organizational hierarchy. For more information, see Policy-Driven Cluster Management in VMware Tanzu Mission Control Concepts.

Note:

This feature is available in Tanzu Mission Control only if you are using Tanzu Advanced Edition.