yandex_cloudregistry_registry_ip_permission (Resource)
Written by
Updated at September 18, 2025
Creates a new Cloud Registry IP Permission. For more information, see the official documentation
Example usage
//
// Create a new Cloud Registry and new IP Permissions for it.
//
resource "yandex_cloudregistry_registry" "my_registry" {
name = "test-registry"
folder_id = "test_folder_id"
labels = {
my-label = "my-label-value"
}
kind = "DOCKER"
type = "LOCAL"
description = "Some desctiption"
}
resource "yandex_cloudregistry_registry_ip_permission" "my_ip_permission" {
registry_id = yandex_cloudregistry_registry.my_registry.id
push = ["10.1.0.0/16", "10.2.0.0/16", "10.3.0.0/16"]
pull = ["10.1.0.0/16", "10.5.0/16"]
}
Schema
Required
registry_id(String) The ID of the registry that IP restrictions are applied to.
Optional
pull(Set of String) List of configured CIDRs from whichpulloperations are allowed.push(Set of String) List of configured CIDRs from whichpushoperations are allowed.timeouts(Attributes) (see below for nested schema)
Read-Only
id(String) The ID of IP permission.
Nested Schema for timeouts
Optional:
create(String) A string that can be parsed as a duration consisting of numbers and unit suffixes, such as "30s" or "2h45m". Valid time units are "s" (seconds), "m" (minutes), "h" (hours).delete(String) A string that can be parsed as a duration consisting of numbers and unit suffixes, such as "30s" or "2h45m". Valid time units are "s" (seconds), "m" (minutes), "h" (hours). Setting a timeout for a Delete operation is only applicable if changes are saved into state before the destroy operation occurs.read(String) A string that can be parsed as a duration consisting of numbers and unit suffixes, such as "30s" or "2h45m". Valid time units are "s" (seconds), "m" (minutes), "h" (hours). Read operations occur during any refresh or planning operation when refresh is enabled.update(String) A string that can be parsed as a duration consisting of numbers and unit suffixes, such as "30s" or "2h45m". Valid time units are "s" (seconds), "m" (minutes), "h" (hours).
Import
The resource can be imported by using their resource ID. For getting the resource ID you can use Yandex Cloud Web Console
# terraform import yandex_cloudregistry_registry_ip_permission.<resource Name> <registry_id>
terraform import yandex_cloudregistry_registry_ip_permission.my_ip_permission crps9**********k9psn