使用./kk create cluster -f config-sample.yaml 安装失败

error: Pipeline[CreateClusterPipeline] execute failed: Module[PullModule] exec failed:

failed: [node1] [PullImages] exec failed after 3 retries: pull image failed: Failed to exec command: sudo -E /bin/bash -c “env PATH=$PATH crictl pull kubesphere/pause:3.7 –platform amd64”

E0711 12:02:08.038180 1650 remote_image.go:238] “PullImage from image service failed” err="rpc error: code = Unknown desc = failed to pull and unpack image \“docker.io/kubesphere/pause:3.7\”: failed to copy: httpReadSeeker: failed open: failed to do request: Get \“https://production.cloudflare.docker.com/registry-v2/docker/registry/v2/blobs/sha256/22/221177c6082a88ea4f6240ab2450d540955ac6f4d5454f0e15751b653ebda165/data?verify=1720673527-dCtdd28%2B0UI7%2BnYdqWn2Ps5rZzY%3D\”: tls: failed to verify certificate: x509: certificate is valid for *.facebook.com, *.facebook.net, *.fbcdn.net, *.fbsbx.com, *.m.facebook.com, *.messenger.com, *.xx.fbcdn.net, *.xy.fbcdn.net, *.xz.fbcdn.net, facebook.com, messenger.com, not production.cloudflare.docker.com" image=“kubesphere/pause:3.7”

FATA[0031] pulling image: rpc error: code = Unknown desc = failed to pull and unpack image “docker.io/kubesphere/pause:3.7”: failed to copy: httpReadSeeker: failed open: failed to do request: Get “https://production.cloudflare.docker.com/registry-v2/docker/registry/v2/blobs/sha256/22/221177c6082a88ea4f6240ab2450d540955ac6f4d5454f0e15751b653ebda165/data?verify=1720673527-dCtdd28%2B0UI7%2BnYdqWn2Ps5rZzY%3D”: tls: failed to verify certificate: x509: certificate is valid for *.facebook.com, *.facebook.net, *.fbcdn.net, *.fbsbx.com, *.m.facebook.com, *.messenger.com, *.xx.fbcdn.net, *.xy.fbcdn.net, *.xz.fbcdn.net, facebook.com, messenger.com, not production.cloudflare.docker.com: Process exited with status 1

failed: [node2] [PullImages] exec failed after 3 retries: pull image failed: Failed to exec command: sudo -E /bin/bash -c “env PATH=$PATH crictl pull kubesphere/pause:3.7 –platform amd64”

E0711 12:02:11.104310 1633 remote_image.go:238] “PullImage from image service failed” err="rpc error: code = DeadlineExceeded desc = failed to pull and unpack image \“docker.io/kubesphere/pause:3.7\”: failed to copy: httpReadSeeker: failed open: failed to do request: Get \“https://production.cloudflare.docker.com/registry-v2/docker/registry/v2/blobs/sha256/22/221177c6082a88ea4f6240ab2450d540955ac6f4d5454f0e15751b653ebda165/data?verify=1720673500-GNcuyfeec6J0n0lTcVi82df2iJ0%!D(MISSING)\”: dial tcp 31.13.69.245:443: i/o timeout" image=“kubesphere/pause:3.7”

FATA[0035] pulling image: rpc error: code = DeadlineExceeded desc = failed to pull and unpack image “docker.io/kubesphere/pause:3.7”: failed to copy: httpReadSeeker: failed open: failed to do request: Get “https://production.cloudflare.docker.com/registry-v2/docker/registry/v2/blobs/sha256/22/221177c6082a88ea4f6240ab2450d540955ac6f4d5454f0e15751b653ebda165/data?verify=1720673500-GNcuyfeec6J0n0lTcVi82df2iJ0%!D(MISSING)”: dial tcp 31.13.69.245:443: i/o timeout: Process exited with status 1

由于国内网络环境,dockerhub镜像不能直接访问,需要配置添加镜像站

示例如下,修改config-sample.yaml 配置,spec.registry.registryMirrors

  registry:
    privateRegistry: ""
    namespaceOverride: ""
    registryMirrors: [
    "https://dockerhub.icu",
    "https://docker.chenby.cn",
    "https://docker.1panel.live",
    "https://docker.awsl9527.cn",
    "https://docker.anyhub.us.kg",
    "https://dhub.kubesre.xyz"
    ]
    insecureRegistries: []