The DOCKERCFG-Type is for syncing the Pull-Credentials for secured Docker repositories. The data has to be saved in a specific format inside a KV Secret Engine.
As already described the Pull-Credentials must be saved in a specific format inside a KV Secret Engine:
$ vault write secret/gitlab-hub url=registry.gitlab.com username=username password=VERYSECUREPASSWORD firstname.lastname@example.org
After this you can apply the following Vault Resource to Kubernetes:
apiVersion: "koudingspawn.de/v1"kind: Vaultmetadata:name: test-dockercfgspec:path: "secret/gitlab-hub"type: "DOCKERCFG"
Now you should see a Vault resource in Kubernetes and the created Docker Pull-Credentials:
$ kubectl get vault test-dockercfgNAME AGEtest-dockercfg 8d
$ kubectl get secret test-dockercfgNAME TYPE DATA AGEtest-dockercfg kubernetes.io/dockercfg 1 8d