dhi.io/cilium-envoy
1.19-debian-fips, 1.19-debian13-fips, 1.19-fips, 1.19.7-debian-fips, 1.19.7-debian13-fips, 1.19.7-fips
sha256:6908afce9f6571d2acc9dbc16f1614e4b1f5e854dc2bf73c9331503ee8619efb
Manifest digest:sha256:7dd658408eaa685b6be32f36b0c11dd63fb82f7e379decfd98b4d1fe7a116503
Size
40.25 MB
Last pushed
2 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/cilium-envoy:1.19-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/cilium-envoy:1.19-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/cilium-envoy@sha256:97e999c7bb318e3bd84ffc1dcf204c7c90986deb8d6f5e327cd851f9c23654e1 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/cilium-envoy@sha256:236153d735703d2c3f62159dfc3be7f559053a2be9f03393bcf4c127f627b721 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/cilium-envoy@sha256:6cca20930dc5ffe07030ada709650f3c26b6cec844001e6b4f4102b6d72cbfc2 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/cilium-envoy@sha256:4084fc7cd156abf0766ccf83f4527e653de531212ccaedf683e125a7e5e65d25 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/cilium-envoy@sha256:544fa8374061fe37bd800f227bc21b1f79c40588376b2d830222f8fa1c884236 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/cilium-envoy@sha256:51d9bcf1ce63cba0da1289708b3a705fdd2d0016d09c8d51b429f6dff8d0497d |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/cilium-envoy@sha256:44ace2ea98183ee5f43ab20a36cc723e28568d3a2df1828e4bbfeef4c221381c |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/cilium-envoy@sha256:6714e5522e9a9097ab85453798503bc1c8266acc5837bdf8b9dc102f79d04d81 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/cilium-envoy@sha256:c7c63b67a09fbe662f09dd3df8432ae6deab0ced251ceb616f946a923916b453 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/cilium-envoy@sha256:108a24041923fcc50f2dd3b800437a0ca5afe9961f0e8c3bc78ad610ca96a824 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/cilium-envoy@sha256:21a64518d0cc8354a782a7b8c66045d24a3c612316611e09064b59bf057c3ec4 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/cilium-envoy@sha256:a5c7364ad31f13ee0757b84769038a8c98f0f586eeef73acd6ec8665e2e4c39a |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/cilium-envoy@sha256:226042a6f5336402ddbaf015fd4bf25610e05fe0eec9746cac4aa342c33bd3dc |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/cilium-envoy@sha256:db9c52f45d0b5e00191b9850e61402cb9cb4e3dae25e1fb5e08f453a550cdbc1 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/cilium-envoy@sha256:461279f38ca676738450217954e43740b2ccedfb60dbf99237c565181bb77265 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/cilium-envoy@sha256:a9ba699dae3724bf489aea3de0f7f6fcfbc69026a572a3622a0dfbf3d93d5f66 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/cilium-envoy@sha256:3f2d980514759f9583c41315ec939048dd1f61a9279285c3d96c1b66977f2628 |