LogoLogo
⌘Ctrlk
BlogSupport
  • Home
AI Assistant
Good afternoon

I'm here to help you with the docs.

⌘Ctrli
AI Based on your context
LogoLogo
    • Welcome
    • Releases
    • Getting started
    • Product architecture
    • Support lifecycle
    • Security Assurance Policy on Prisma Cloud Compute Edition
    • Licensing
    • Prisma Cloud Enterprise Edition vs Compute Edition
    • Utilities and plugins
    • Install
    • Getting started
    • System requirements
    • Cluster Context
    • Deploy the Prisma Cloud Console On-Prem
    • Deploy the Prisma Cloud Defender
    • Upgrade
    • Support lifecycle
    • Upgrade process
    • Onebox
    • Kubernetes
    • OpenShift
    • Helm charts
    • Amazon ECS
    • Manually upgrade single Container Defenders
    • Manually upgrade Defender DaemonSets
    • Manually upgrade Defender DaemonSets (Helm)
    • Agentless Scanning
    • Agentless Scanning Modes
    • Onboard Accounts for Agentless Scanning
    • Agentless Scanning Results
    • Technology overviews
    • Intelligence Stream
    • Prisma Cloud Advanced Threat Protection
    • App-specific network intelligence
    • Container runtimes
    • Radar
    • Serverless Radar
    • Prisma Cloud rules guide for Docker
    • Defender architecture
    • Host Defender architecture
    • TLS v1.2 cipher suites
    • Telemetry
    • Configure
    • Rule ordering and pattern matching
    • Backup and restore
    • Custom feeds
    • Proxy configuration
    • Certificates
    • Configure scan intervals
    • User certificate validity period
    • Enable HTTP access to Console
    • Set different paths for Console and Defender (with daemon sets)
    • Authenticate to Console with certificates
    • Configure custom certs from a predefined directory
    • Customize terminal output
    • Collections
    • Tags
    • Logon Settings
    • Reconfigure Prisma Cloud
    • Subject Alternative Names
    • WildFire settings
    • Log scrubbing
    • Clustered-DB
    • Permissions
    • Authentication
    • Log into Console
    • Integrate with an IdP
    • Active Directory
    • OpenLDAP
    • OpenID Connect
    • Okta (SAML 2.0)
    • Google G Suite (SAML 2.0)
    • Azure Active Directory (SAML 2.0)
    • PingFederate (SAML 2.0)
    • Active Directory Federation Services (SAML 2.0)
    • GitHub (OAuth 2.0)
    • OpenShift (OAuth 2.0)
    • Active Directory Non-default UPN suffixes
    • Compute user roles
    • Assign roles
    • Credentials Store
    • Cloud Service Providers
    • Cloud Discovery
    • Configure Cloud Discovery
    • Vulnerability Management
    • Prisma Cloud Vulnerability Feed
    • Image Vulnerability Scanning
    • Vulnerability Management Policies
    • View Vulnerability Scan Reports
    • Scan Images for Custom Vulnerabilities
    • Exclude Base Image Vulnerabilities
    • Vulnerability Explorer
    • Exporting Software Bill of Materials on CycloneDX
    • CVSS scoring
    • CVE Viewer
    • Registry Scans
      • Configure Registry Scans
      • Alibaba Cloud Container Registry
      • Amazon Elastic Container Registry
      • Azure Container Registry
      • Docker Registry v2 (including Docker Hub)
      • Scan Images in GitLab Container Registry
      • Google Artifact Registry
      • Google Container Registry
      • Harbor
      • IBM Cloud Container Registry
      • JFrog Artifactory Docker Registry
      • Sonatype Nexus Registry
      • OpenShift integrated Docker registry
      • Scan CoreOS Quay Registry
      • Trigger Registry Scan with Webhooks
    • Configure VM Image Scanning
    • Scan for Malware
    • Configure Windows Image Scanning
    • Configure Serverless Function Scanning
    • Configure VMware Tanzu Blobstore Scanning
    • Scan App-Embedded Workloads
    • Troubleshoot Vulnerability Detection
    • Compliance
    • Compliance Explorer
    • Manage compliance
    • CIS Benchmarks
    • Prisma Cloud compliance checks
    • Serverless functions
    • Windows compliance checks
    • DISA STIG compliance checks
    • Custom compliance checks
    • Trusted images
    • Host scanning
    • VM image scanning
    • App-Embedded scanning
    • Detect secrets
    • Runtime defense
    • Runtime defense for containers
    • Runtime defense for hosts
    • Runtime defense for serverless
    • Runtime defense for App-Embedded
    • Custom runtime rules
    • Import and export individual rules
    • ATTACK explorer
    • Runtime audits
    • Event Aggregation
    • Aggregation of Events by Defender
    • Detailed Aggregation Event Types
    • Image analysis sandbox
    • Incident Explorer
    • Incident types
    • Access control
    • Admission control
    • Continuous integration
    • Jenkins plugin
    • Jenkins Freestyle project
    • Jenkins Maven project
    • Jenkins Pipeline project
    • Run Jenkins in a container
    • Jenkins pipeline on K8S
    • Set policy in the CI plugins
    • Code repo scanning
    • Web-Application and API Security (WAAS)
    • Overview
    • Deploying WAAS
    • WAAS explorer
    • App firewall
    • API protection
    • DoS protection
    • Bot protection
    • Access control
    • Advanced settings
    • Analytics
    • API Discovery
    • API definition scan
    • Custom rules
    • Unprotected web apps
    • WAAS Sensitive Data
    • Firewalls
    • Secrets
    • Secrets manager
    • Integrate with a secrets store
    • Secrets stores
    • Inject secrets into containers
    • Injecting secrets example
    • Alerts
    • Alert mechanism
    • AWS Security Hub
    • Cortex XDR
    • Cortex XSOAR
    • Email
    • Google Cloud Pub/Sub
    • Google Cloud SCC
    • IBM Cloud Security Advisor
    • JIRA
    • PagerDuty
    • ServiceNow Security Incident Response
    • ServiceNow Vulnerability Response
    • Slack
    • Splunk
    • Webhook
    • Audit
    • Event viewer
    • Host activity
    • Admin activity
    • Annotate audits
    • Syslog and stdout integration
    • Log rotation
    • Throttling
    • Prometheus
    • Kubernetes auditing
    • Review Debug Logs
    • Tools
    • twistcli
    • Scan images with twistcli
    • Scan code repos with twistcli
    • Install Console with twistcli
    • Update offline environments
    • Deployment patterns
    • Projects
    • Migration options for scale projects
    • DNS and certificate management
    • Storage limits for audits and reports
    • Migrate to SaaS Console
    • Performance planning
    • Automated deployment
    • High availability
    • API
    • How-To Guides
    • Configure an ECS load balancer
    • Configure Console's listening ports
    • Provision tenant projects OpenShift
    • Disable automatic learning
    • Review debug logs
    • Deploy in FIPS mode
    • Run third-party assessment tools
For the complete documentation index, see llms.txt. This page is also available as Markdown.
  1. Compute Edition
  2. Admin Guide
  3. 33
  4. Vulnerability Management

Registry Scans

Configure Prisma Cloud to scan your registries.

  • Scan images in Sonatype Nexus Registry

  • Scan images in Alibaba Cloud Container Registry

  • Scan images in Amazon Elastic Container Registry (ECR)

  • Scan images in Azure Container Registry (ACR)

  • Scan images in Docker Registry v2

  • Scan Images in GitLab Container Registry

  • Scan images in Google Artifact Registry

  • Scan images in Google Container Registry (GCR)

  • Scan images in Harbor Registry

  • Scan images in IBM Cloud Container Registry

  • Scan images in JFrog Artifactory Docker Registry

  • Scan Images in OpenShift integrated Docker Registry

  • Scan Images in CoreOS Quay

  • Trigger Registry scans with webhooks

PreviousCVE ViewerNextConfigure Registry Scans

Last updated 24 days ago

Was this helpful?

LogoLogo

© 2026 Palo Alto Networks, Inc. All rights reserved.

Was this helpful?