Google Artifact Registry

Overview

ARMO platform allows you to scan container images from your Google Artifact Registry for vulnerabilities. This guide provides step-by-step instructions to connect your Google Artifact Registry with the ARMO platform.


Prerequisites

  • Access to your Google Cloud Console.
  • Permissions to manage Artifact Registries and create service accounts.
  • An active ARMO platform account.

Step-by-Step Guide

Step 1: Navigate to the Integrations Page

Log into the ARMO platform and navigate to the Integrations section from the settings menu.
From the Container Registries section, click Connect under the Google Artifact Registry option.


Step 2: Add a New Registry

Click Add Registry to start configuring your Artifact Registry.


Step 3: Provide Registry Details

  • Cluster: Select the cluster from which the registry scanning will be initiated.
  • Registry URI: Enter the URI of your Google Artifact Registry.

Click Next to proceed.


Step 4: Enable Artifact Registry API

Follow the on-screen instructions to enable the Artifact Registry API in your Google Cloud Console. This ensures ARMO has access to your container images.


Step 5: Create a Service Account

Create a service account in your Google Cloud Console and assign the necessary roles:

  1. Artifact Registry Reader.
  2. Basic Viewer.

Download the service account JSON file for authentication.



Step 6: Upload Service Account Key

Upload the downloaded JSON file into the ARMO platform to authenticate the connection.


Step 7: Schedule Scans (Optional)

You can configure a schedule for periodic scans of your Google Artifact Registry. Define the frequency and time for automated scans.


Step 8: Finalize the Connection

Review the configuration and click Save to activate the integration. Your Google Artifact Registry is now connected to the ARMO platform.


Conclusion

By connecting your Google Artifact Registry to the ARMO platform, you can ensure continuous security and compliance for your container images. This integration allows you to streamline your container image scanning workflows and receive actionable insights.