Sign inSign up
Cilium Envoy

dhi.io/cilium-envoy

Cilium Envoy 1.19.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.19-debian-dev, 1.19-debian13-dev, 1.19-dev, 1.19.8-debian-dev, 1.19.8-debian13-dev, 1.19.8-dev

Index digest:

sha256:65b8e42f29b41e6d998cc12fe0207c546fb3aec40cf14fe04c23c0a8aef530a6

Manifest digest:

sha256:1c5e94cc0f3686bc60c7d1e1ab3d5ec8760df2f23a9ca021b0250893ace3eae5

Size

54.76 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cilium-envoy:1.19-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cilium-envoy:1.19-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cilium-envoy@sha256:60e36cd2ce103fff0f5d022fb9e7ef79bab648ac2c3c58c376a1ef8530c86b3e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cilium-envoy@sha256:e4c10ebf5d9a225f3ec1250a189f1d96d29c79490267d5c1978c186ed843d644
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cilium-envoy@sha256:2a54f0507331f13ca5338f6c7c753610cfd244b7e6315068519e84ffb55ea1a5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cilium-envoy@sha256:34424ec64c6ecde047e68a9b7d979c7137f582a3073e11be48c9ba3371ceb29d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cilium-envoy@sha256:e5b5fdd3e8b38dfe3f1112818a96baa21374f3b7ac8bfc6f9cce619100e15e2b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cilium-envoy@sha256:f8731efcadf332157f9be41b32df4513a939f893b9516101ff102fac172ceaf2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cilium-envoy@sha256:6cce9fb526cd270c81158af3426d097857bb3885c10ee2721e5e6f1c59392de2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cilium-envoy@sha256:6ab07efba625faa2f8eb4f4bd110f5209c41a3d948e31f0a0aca0c1c3ecc3070
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cilium-envoy@sha256:ae069c69f56bc40238a9115035eb41af7ca5d3fe9202d70c029b2229d691532e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cilium-envoy@sha256:5a614c5ed9d12b749d127c83bed5d73ee3d33752b913202b1479e6dc9a196738
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cilium-envoy@sha256:903d9e2eb345b87514eeb108eb11eff4c391083af9d5b0e07b72971fa23e80dc
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cilium-envoy@sha256:b68abd0a7ed0c9108effb8ccd80afacd807a63b8dc600f6af248bd7971f79369
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cilium-envoy@sha256:2c7b1abfc8a141fda3e0ec0e567da59f1b350384b6425cdb4257179f37c8e8cb
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cilium-envoy@sha256:bf55a1e2a0e30cdcc028d4be3c975f603bdc476cb89941057adfbd1ec13bbdc0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cilium-envoy@sha256:45495e094562aaea1401a98dd3f74f1a0e6f0ddc9349c8d6480d2cb207e183b0