I post a new topic after few entire days of research.
I have installed a local gitlab-ce with docker-compose behind reverse proxy (nginx).
When i execute the command docker login www.gitlab-local.com:5050 this error appears :
Error response from daemon: Get https://www.gitlab-local.com:5050/v2/: Get https://www.gitlab-local.com/jwt/auth?account=root&client_id=docker&offline_token=true&service=container_registry: dial tcp [::1]:443: connect: connection refused
I encountered all common SSL errors (SSL Configuration | GitLab) until this last one :
SSL certificate problem: self signed certificate in certificate chain
This error is the result of the test command :
openssl s_client -showcerts -servername www.gitlab-local.com -connect www.gitlab-local.com:5050
I followed instructions by adding the .pem file into /trusted-certs/ directory. The hash is created in “…/embedded/…” directory. I also verify the .pem file with the command openssl verify -CAfile www.gitlab-local.com.pem www.gitlab-local.com.crt
The gitlab instance works, trusted with chrome. I don’t see any errors on logs.
There, my gitlab configuration (gitlab-ce) :
external_url 'https://www.gitlab-local.com' registry_external_url 'https://www.gitlab-local.com:5050' gitlab_rails['gitlab_shell_ssh_port'] = 2213 nginx['redirect_http_to_https'] = true nginx['redirect_http_to_https_port'] = 80 nginx['ssl_certificate'] = "/etc/gitlab/ssl/www.gitlab-local.com.crt" nginx['ssl_certificate_key'] = "/etc/gitlab/ssl/www.gitlab-local.com.key" registry_nginx['ssl_certificate'] = "/etc/gitlab/ssl/www.gitlab-local.com.crt" registry_nginx['ssl_certificate_key'] = "/etc/gitlab/ssl/www.gitlab-local.com.key" letsencrypt['enabled'] = false
I tried to enable registry_nginx[‘proxy_set_headers’] without success.
I also tested this configuration (same certificates…) on an other computer , debian native, it works without the fullchain cert and without add the .pem file in trusted-certs/
I have certainly miss something, please help.
Thanks for help in advance.
NB : Sorry for my english level ^^