Skip to main content

msb pull

Download an image to the local cache. Shared layers are stored once.
Expanded form: msb image pull. Managed registry settings take precedence over --insecure, --ca-certs, and supplied credentials. A managed TLS-only entry preserves normal credential lookup. layered prepares the standard root; flat prepares a complete ext4 base; all prepares both. See flat roots. Without --materialize, the configured sandbox_defaults.oci.root_disk selects the layout. The built-in default is layered.
Pre-pulling is useful when you want sandbox creation to be instant. Without a pre-pull, the first Sandbox.create with a new image will block on the download.

msb load

Load a Docker image archive or OCI Image Layout archive into the local microsandbox cache.
Expanded form: msb image load.

msb save

Save one or more cached images as a Docker-compatible archive or OCI Image Layout archive.
Expanded form: msb image save. Exports preserve image contents, but regenerated layers can change image and layer digests.

msb images

List images in the local cache.
Expanded form: msb image ls.

msb image inspect

Show detailed metadata for a cached image (manifest, layers, config).

msb rmi

Remove one or more cached images and their layers (layers shared with other images are kept).
Expanded form: msb image rm.

msb image prune

Remove cached images that are not used by any sandbox or indexed snapshot, then clean up dangling image artifacts.
Images referenced by sandboxes or indexed snapshots are kept. To remove a specific referenced image, use msb rmi --force.

msb registry

See Registry commands for login, logout, and stored credentials.