Sign inSign up
Cilium

dhi.io/cilium

Cilium 1.19.x

CIS
linux/amd64
debian 13
Tags:

1.19, 1.19-debian, 1.19-debian13, 1.19.8, 1.19.8-debian, 1.19.8-debian13

Index digest:

sha256:5f8e99f3f7495e2d6203c66350d629b0ff5ba956354ff0db1cd63345878c4551

Manifest digest:

sha256:766fbdc60c62671cf82b2735da99cfaf52d56902590e494c9d917195577060d1

Size

216.91 MB

Last pushed

12 hours ago

Vulnerabilities

2
8
0
1
4

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cilium:1.19

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cilium:1.19 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cilium@sha256:8ce59e174845e2201d2f13c9aebec110320789bb47d22eff2f5ca131b70037fd
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cilium@sha256:f8e38c37e859ffa1fee5c34cbe208307c01440b366beb60f7fd68df1daa77357
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cilium@sha256:934b33fb2a2608a822dfa24bec11f1c2de751e7af08d397032e88c820c68ec04
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cilium@sha256:78e78eb830ec05f3319f1eb4c0457ff4fd93b32c876c23be73e040b3bbcf37c1
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cilium@sha256:b646b423f5241a7aa9b0fdcd2d04cbb44548e6483f3282464257a047cec2e5e4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cilium@sha256:ac84fb64867268133dd458d3cb7cf1b1464cae36ef4ab203b3fd6c028a58f457
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cilium@sha256:61d4e8428b751d7f8cc0a5bd1edf1e3991a7db7d617a35775b46c906a9c91f71
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cilium@sha256:1abe85e374b02766194ebfd3c334b15fbf1a3e122b1ea5d70f49c7934087e094
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cilium@sha256:02824f73d4487e6d0b8336d54dd63bdeac55eb4ac881b0173743ca1a916535f0
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cilium@sha256:14c44b89be3671baee44acd77116ed3708a75114b76b1727300e2515bd304548
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cilium@sha256:358c98374549b3cb5fa45f22e1fcb19760cae818f8a044f4fe317a862aeaac95
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cilium@sha256:fd62927153db2790ef1f59f4592f8e36cc7921325562ef8f8850bea56e28fa77
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cilium@sha256:5df12998d87a1612052b66b2982bd153da33fe2b8e3726f5139f76e22bb32b7e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cilium@sha256:19f9a227955bcb49bddecb753f24be8ac7ea77f4798e2665c81c83c078c549db
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cilium@sha256:af5e4238913537aac9e6fed917a5af8d493ce1f69ef9961b7f25ac1ffa8f5c08