You need to sign in or sign up before continuing.
AutoDevOps - use Docker with TLS
Enable Auto DevOps to use Docker TLS
Docker 19.03 enables TLS by default:
Starting in 18.09+, the dind variants of this image will automatically
generate TLS certificates in the directory specified by the
DOCKER_TLS_CERTDIR environment variable.
Warning: in 18.09, this behavior is disabled by default (for
compatibility). If you use --network=host, shared network namespaces (as
in Kubernetes pods), or otherwise have network access to the container
(including containers started within the dind instance via their gateway
interface), this is a potential security issue (which can lead to access
to the host system, for example). It is recommended to enable TLS by
setting the variable to an appropriate value (-e
DOCKER_TLS_CERTDIR=/certs or similar). In 19.03+, this behavior is
enabled by default.
https://gitlab.com/gitlab-org/gitlab-ce/merge_requests/31051/diffs documents how to achieve this