dhi.io/beyla
2.5-debian-fips-dev, 2.5-debian13-fips-dev, 2.5-fips-dev, 2.5.8-debian-fips-dev, 2.5.8-debian13-fips-dev, 2.5.8-fips-dev
sha256:037b7dfe94b7ce346ebf83fb8d0ff700d1dc1491be258aee42d46afded8a6c3a
Manifest digest:sha256:46953629e5c07fdb0e40513f9bc13d380db6fb93878c6913e23a9fdbc0fda7f8
Size
77.35 MB
Last pushed
5 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/beyla:2.5-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/beyla:2.5-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/beyla@sha256:95dfac98c8cbba86c577deb84cedab7154917cb155ab720d5e59c8baf3923add |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/beyla@sha256:e5415ce718d2ca8e9e909b52dd8dafa1b56556da7698a08f4c8c183795b19fd4 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/beyla@sha256:81471ca3b4a3aae80c81be26bdaf1efb5db28b20ded235b409760c7f5c1ecb13 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/beyla@sha256:9170ca2147341b1e2206eeb5c5e047979049d9f85b74438ef6cf77f5e1189f09 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/beyla@sha256:e845308bd4693b673bbce000813acf7468ec46ab6ab552dd5b33aab4e3c33eb9 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/beyla@sha256:e77749eb5404c9a17cafc8bc70e55dbed4f61ec86c178121b0a1e7dfa23fba55 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/beyla@sha256:4bb50bdb4addef41677ab6494d5498873d2c7f846bbe97ee4a45e49422e707cb |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/beyla@sha256:8eac3bf5bbc12a08bfd3bd8a92c1e62d5341ae39e5fa587f85491ae47a4cf7b8 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/beyla@sha256:10318ccc7568bb34af717ff1216eb5125904fa25c786997d95a913d800f817bf |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/beyla@sha256:5640a2b2e17a17dd83fcd0aa0f5476479f81d3f047c0ea767e7f032f1a9bb297 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/beyla@sha256:f79fbb8e3be74983cf9ef5454cd2a5f0b781706fe8a79c5b4a1e58d85f462bb7 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/beyla@sha256:5fd4253eb748788c66af9f10746c1892286c60f616bd9d43f346de7d8d2d53a5 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/beyla@sha256:fdd93f0125a53da5e7df007723cccb63584671c799d6196e039f38fd979ad706 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/beyla@sha256:2df048af29de3d0e94d526e9c4bc2d2078bf9081c0ab5bcc1e415b1c4fe3a67d |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/beyla@sha256:ccffee7de1bfc0126bcdbacd1408621054e72f37ac004e022fc5f234bbc1c8bc |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/beyla@sha256:e6e21216b3f36e91ee9d20fe2fe16f3fc6021ce2742c4ef7fadefa5e174dd39e |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/beyla@sha256:62eb9605dc0a9641d8350113e3b5e3606522954c5a9dff0f91c5ed41f2f22391 |