dhi.io/cilium
1.19-debian-fips-dev, 1.19-debian13-fips-dev, 1.19-fips-dev, 1.19.8-debian-fips-dev, 1.19.8-debian13-fips-dev, 1.19.8-fips-dev
sha256:0a4af1304abc7b7b9f481be1b1e6b7c0d1e743fc35bac8158cc6d0876933b38a
Manifest digest:sha256:00519019accd314eb15a61f20abeb69234686d595b4d575c58093d3af2ae1f50
Size
333.69 MB
Last pushed
3 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/cilium:1.19-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/cilium:1.19-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/cilium@sha256:376949a256b24f1121cd38c635617698d3941bdc8e681a106fa091aa75fabfa6 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/cilium@sha256:13245222079207b1ee48253d31160ddc10731a4a45c409797ff75669f61043df |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/cilium@sha256:379d48524e7f343622a369bc4ca1ee8bcd8e51d12f722a900ad04bb920e0bcf5 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/cilium@sha256:a689c2305e272fd65ffad102353eefa4006f852115596065984743f417036782 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/cilium@sha256:b9eab3e8f544c04c59033fb0cb16344f1194ae1cb2e9758799b98140915cccfd |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/cilium@sha256:31e7e1b37db980ab0dfbe1448f776ab0cd01f644e597d87f65834850f5f7bb3d |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/cilium@sha256:5901c83a6ec9a6137e7c906111cfc1f09682b88605abf833f4765062dbbb3b1a |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/cilium@sha256:4430b47c8184444cef456e4b46ed4d8ea574d07d9117ce216ef4456e8e416936 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/cilium@sha256:cc625b3eccfdd1c05e7a9ab6c12e270b72ac2175fd1c73fa86260cda4ccf561f |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/cilium@sha256:ddd869593120322384438f0762926ba23171c44f9198e66c9c6f8816ee0b180b |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/cilium@sha256:afc88b237e9d8c1fd0cef3b2ff6955db94e4e956312c3e0ad29b3668444d8453 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/cilium@sha256:e57da9a92c04e5a307b124d0f103e4cad30b87d1de759c0961c9f4e2c25702d7 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/cilium@sha256:0a1f1639de76230f66c506d3fac9b0d12201bfe2c1f68ba5fb26c60dfd2a9c77 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/cilium@sha256:1b32b3d83e488ae537a02711810e65c5b9310279727c04febe9a929806e28e29 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/cilium@sha256:5d94adfc074b4643754b74ea0f52579380f6c1ad3677c7259be5be47c1322eed |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/cilium@sha256:253376ec9606ce026fde2e25eb0f7fe0f9f976d09a80b8a6b9155925db554a23 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/cilium@sha256:bcbf620a4610515cb631b73367f1967a7a998e45018d6e1464753aa5a7e60927 |