<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Porch Server on Porch Documentation</title><link>/docs/6_configuration_and_deployments/configurations/components/porch-server-config/</link><description>Recent content in Porch Server on Porch Documentation</description><generator>Hugo</generator><language>en-us</language><atom:link href="/docs/6_configuration_and_deployments/configurations/components/porch-server-config/index.xml" rel="self" type="application/rss+xml"/><item><title>Git Authentication</title><link>/docs/6_configuration_and_deployments/configurations/components/porch-server-config/git-authentication/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/docs/6_configuration_and_deployments/configurations/components/porch-server-config/git-authentication/</guid><description>&lt;h2 id="authentication-methods"&gt;Authentication Methods&lt;a class="td-heading-self-link" href="#authentication-methods" aria-label="Heading self-link"&gt;&lt;/a&gt;&lt;/h2&gt;
&lt;p&gt;The Porch Server handles interaction with Git repositories through Repository Custom Resources (CRs) that act as a link between the Porch Server and the Git repositories.&lt;/p&gt;
&lt;p&gt;Porch Server supports three authentication methods for Git repositories:&lt;/p&gt;
&lt;ol&gt;
&lt;li&gt;
&lt;a href="#1-basic-authentication"&gt;Basic Authentication&lt;/a&gt; - Username and password or Personal Access Token (post-deployment)&lt;/li&gt;
&lt;li&gt;
&lt;a href="#2-bearer-token-authentication"&gt;Bearer Token Authentication&lt;/a&gt; - Token-based authentication (post-deployment)&lt;/li&gt;
&lt;li&gt;
&lt;a href="#3-httpstls-configuration"&gt;HTTPS/TLS Configuration&lt;/a&gt; - Custom TLS certificates for self-hosted Git (&lt;strong&gt;requires pre-deployment configuration&lt;/strong&gt;)&lt;/li&gt;
&lt;/ol&gt;
&lt;h3 id="1-basic-authentication"&gt;1. Basic Authentication&lt;a class="td-heading-self-link" href="#1-basic-authentication" aria-label="Heading self-link"&gt;&lt;/a&gt;&lt;/h3&gt;
&lt;p&gt;Uses username and password or Personal Access Token (PAT). The secret must:&lt;/p&gt;</description></item><item><title>Pod Templates</title><link>/docs/6_configuration_and_deployments/configurations/components/porch-server-config/pod-templates/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/docs/6_configuration_and_deployments/configurations/components/porch-server-config/pod-templates/</guid><description>&lt;p&gt;The Engine pod evaluator (porch-server and the PackageRevision controller) builds function pods from the &lt;strong&gt;PodTemplate&lt;/strong&gt;/&lt;strong&gt;ServiceTemplate&lt;/strong&gt; objects &lt;code&gt;base-pod-template&lt;/code&gt; and &lt;code&gt;base-service-template&lt;/code&gt; in the function-pod namespace (default &lt;code&gt;porch-fn-system&lt;/code&gt;), plus per-function overrides from the matching 
&lt;a href="/docs/6_configuration_and_deployments/configurations/components/function-runner-config/function-configuration/"&gt;FunctionConfig&lt;/a&gt;.
There is no &lt;code&gt;--function-pod-template&lt;/code&gt; flag and no ConfigMap template. This page moved from Function Runner with the pod evaluator.&lt;/p&gt;
&lt;p&gt;For how those templates are used during pod creation, see 
&lt;a href="/docs/5_architecture_and_components/engine/functionality/pod-lifecycle-management/"&gt;Pod Lifecycle Management&lt;/a&gt;.&lt;/p&gt;
&lt;h2 id="how-templates-are-applied"&gt;How templates are applied&lt;a class="td-heading-self-link" href="#how-templates-are-applied" aria-label="Heading self-link"&gt;&lt;/a&gt;&lt;/h2&gt;
&lt;p&gt;On pod creation the Engine:&lt;/p&gt;</description></item><item><title>Private Registries</title><link>/docs/6_configuration_and_deployments/configurations/components/porch-server-config/private-registries-config/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/docs/6_configuration_and_deployments/configurations/components/porch-server-config/private-registries-config/</guid><description>&lt;div class="alert alert-primary" role="alert"&gt;&lt;div class="h4 alert-heading" role="heading"&gt;Note&lt;/div&gt;
&lt;p&gt;KPT functions and KRM functions are synonymous terms referring to the same containerized functions.&lt;/p&gt;
&lt;/div&gt;
&lt;p&gt;Configure &lt;strong&gt;porch-server&lt;/strong&gt; to access private container registries for KRM functions. These flags moved from Function Runner with the pod evaluator.&lt;/p&gt;
&lt;h2 id="use-cases"&gt;Use Cases&lt;a class="td-heading-self-link" href="#use-cases" aria-label="Heading self-link"&gt;&lt;/a&gt;&lt;/h2&gt;
&lt;p&gt;Private registries are commonly used for:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;Enterprise environments&lt;/strong&gt; - Internal Harbor or JFrog registries&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Cloud providers&lt;/strong&gt; - GitHub Container Registry (GHCR), AWS ECR, Azure ACR&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Custom functions&lt;/strong&gt; - Organization-specific KRM functions&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="default-public-registries"&gt;Default Public Registries&lt;a class="td-heading-self-link" href="#default-public-registries" aria-label="Heading self-link"&gt;&lt;/a&gt;&lt;/h2&gt;
&lt;p&gt;By default, porch-server uses public registries:&lt;/p&gt;</description></item></channel></rss>