Sign inSign up
Cilium

dhi.io/cilium

Cilium 1.19.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.19-debian-fips, 1.19-debian13-fips, 1.19-fips, 1.19.8-debian-fips, 1.19.8-debian13-fips, 1.19.8-fips

Index digest:

sha256:b939e00da47f0fadc9f436e17873ffa31ebfed464afacdc430ff9ef438244aec

Manifest digest:

sha256:114255021c0609cbecd28c3d148f3390c6296406fe7acdab57c17e90797ea8a4

Size

217.86 MB

Last pushed

3 days ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cilium:1.19-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cilium:1.19-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cilium@sha256:85fe2227ac59559994b2056bf7500b218c536a89605e291383d9eeae16f097e9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cilium@sha256:87238ba3b82364f11e224c69984023dc6dff291d4a834abfa7eb5934b66f1f08
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/cilium@sha256:b806b015bec78f968827faba066ab9f11e0d587baca3690bd7a387d75043906e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cilium@sha256:24c7f9719a16a17310c3ed83f128e0581c212ef6c06ead2dfcb70c63329c47a7
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/cilium@sha256:fa521d4ccd39e3361ebe37187b33e0956575472ecff163951b6b1e1eb41bc90c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cilium@sha256:1156ec4ea8ae08f9c053b2f882a5797fa6e99df5504ac9e531befaa07ce23d2e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cilium@sha256:f37371a3470b441ba498a252427fc5aaeecf5192a14f88c8b1867fb27c2a6a10
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cilium@sha256:bd277389c978e22f82c5c0902e9842494804a0afb40f1bb30d161ee097e98fdc
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cilium@sha256:94530de1b1a9aeba388ded8fad94031266053eb0a197657a477a30fbce214a49
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cilium@sha256:9c78b1419e1bac4ce0754824f469f64cf523adfd4e675bc992d8609a16fc0eef
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cilium@sha256:a7cd76f18624d3b92e9a05d135a7c621efe083b23007742afe8a136bb2cc2ccf
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cilium@sha256:d101ea275a6898feb41d169354044b2a55a49eb552f9be0bcf635f8e959260ad
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cilium@sha256:a47c04482035de022dda77f20bd8c14e1e4e6d7e77f1c931a0d8bad2859ca7ea
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cilium@sha256:cfb58140552e964ef94acc2abba2f1c02febda8d403921ba39694dba8efe7761
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cilium@sha256:85abf92136b96c36b9e606ab332d791935a4b3114cd5c25264ee5cd423813d79
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cilium@sha256:df697d3fe0976d8b8ed6fdd7df8c7c808e321da3610dc0d6831ef47a65fa41e7
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cilium@sha256:10be8e0336c31d7f6ce2e6f6339b64352fd594a7f7b405f9867359ffb5b8c366