Managed Harbor Service overview

Google Distributed Cloud (GDC) air-gapped appliance Managed Harbor Service (MHS) is a fully managed service that lets you store and manage container images, even in air-gapped environments completely isolated from the internet or other networks. The GDC air-gapped appliance environment comes with a preconfigured Harbor registry called tear-harbor in a GDC project called tear. Harbor is an open source registry that secures artifacts with policies and role-based access control, ensuring images are scanned, free from vulnerabilities, and images are signed as trusted.

GDC MHS provides control-plane operations. It enables GDC MHS data-plane operations like pushing and pulling container images. Pushing your container images to a container registry solution like Harbor provides a centralized, secure, scalable, and efficient way to store, manage, and deploy your Docker images.

Harbor is a Cloud Native Computing Foundation (CNCF) graduated open source project that provides a built-in cloud container registry solution for Kubernetes and Docker. With managed service integration, you can store and manage your artifacts on GDC MHS. offers the following features:

  • Harbor instances are automatically provisioned and managed by GDC.
  • Harbor is integrated with GDC's IAM and observability systems.
  • Harbor instances can be upgraded to the newer stable version.
  • Harbor is enhanced to meet GDC's compliance and quality requirements.