Release Date | Chart Version | Change Content | Limitations and Impacts |
2026-07-28 | 1.0.2 | Supports custom domains and STS private network endpoints. | None |
2026-03-06 | 1.0.1 | Optimization of Pod anti-affinity scheduling. | None |
2025-12-11 | 1.0.0 | The initial version has been released. Dynamic key rotation is implemented based on the OIDC + STS temporary credential mechanism. It supports password-free image pulls from TCR Enterprise Edition instances under both the same account and cross-accounts. It supports password-free image pulls from Account A's TCR by clusters under Account B through CAM role bearer authorization. It supports controlling the scope of credential injection at the granularity of namespaces and serviceAccounts. It supports configuring the expiration time of credentials. It supports configuring Webhook namespace exclusions. It supports both the amd64 and arm64 architectures. | Only supports TKE clusters running Kubernetes version 1.20 or later. |
Capability | tcr-assistant | tcr-assistant-oidc |
Credential type | Static long-term credentials (username + password). | Dynamic temporary keys, automatically rotated. |
Cross-account pull | Only supports pulling from the same account. | Supports pulling from the same account and across accounts. |
Security | Long-term key exposure risk. | Temporary keys are rotated periodically and automatically expire. |
Esta página foi útil?
Você também pode entrar em contato com a Equipe de vendas ou Enviar um tíquete em caso de ajuda.
comentários