A container image packages an application with everything it needs to run: code, runtime, libraries and settings. Azure Container Registry (ACR) is a managed, private registry for storing those images and related artifacts, such as Helm charts, close to where you run them: Azure Container Instances, Azure Container Apps, App Service or Azure Kubernetes Service (AKS). Think of it as a private Docker Hub inside your subscription, protected by Microsoft Entra ID and Azure role-based access control (RBAC), so only the people and services you choose can pull or push images. Each registry has a login server name such as contosoacr.azurecr.io, and images are referenced as loginserver/repository:tag. A repository groups versions of one image, and a tag labels a version. Behind each tag is a manifest identified by an immutable digest such as sha256:.... A typical manual workflow with the Docker command-line interface (CLI) looks like this:
Keep reading for free
Create a free StudyToCert account to read the rest of this lesson: 7 more sections, 7 key terms, a real-world example, an exam tip and self-check questions. Every lesson, lab and practice test is free with an account.