Sign inSign up
DataHub Ingestion

dhi.io/datahub-ingestion

DataHub Ingestion 1.6.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.6, 1.6-debian, 1.6-debian13, 1.6.0, 1.6.0-debian, 1.6.0-debian13, 1.6.0.2, 1.6.0.2-debian, 1.6.0.2-debian13

Index digest:

sha256:d913d503ca2f08e35cb5be2ebb152741c328cf81f43835c35c074ded250cdddc

Manifest digest:

sha256:60aa1b6bd4190af4ced42fa9bc5be0fbdff8119a08dbf61bf8508ea68d417ab7

Size

216.26 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
6
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/datahub-ingestion:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/datahub-ingestion:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/datahub-ingestion@sha256:3e773726dbb017083659b132d8d1e34d8ddf1b86e6946b4e6df6555041d40a17
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/datahub-ingestion@sha256:17bd9acccdc305a1743c58856fd13dbb01e5ef7fba7bf25262e9dd113c0dc342
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/datahub-ingestion@sha256:8c56cf9e0942e11d161779580cf734a56bfce587c62b0d7aaaad7fe1283e4a60
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/datahub-ingestion@sha256:def95e9e47b567127609449be38417af97d022ea17a3b85acb6400f9a85a0f54
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/datahub-ingestion@sha256:9e8738b1a5cc4046e1e4c76b38e55ee1d34fcf96034c17850a4b0fe67136f2bd
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/datahub-ingestion@sha256:235fa22704a204050a2e67f8c48809137648eec9a583fe3904e14dbb8cafa184
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/datahub-ingestion@sha256:2154d25be7c1d73d51ab24ee2365be56dc1597d0efeecc22aae26a5d292f93d2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/datahub-ingestion@sha256:985e851e2bea5678ea0065d3b08d21968d89b48c39d39bb447c41cc70ae7bde5
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/datahub-ingestion@sha256:ffe5a9817ac89fe5eca521af34af4a544c400ef6efa3afbfb355870be7b99de6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/datahub-ingestion@sha256:412839e03f4a6fa496548e3b8d4d940e0fe2583703f7a43eefaf8819fced412f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/datahub-ingestion@sha256:495289c5fa2fa731ca798b6f7807c2b2633967217fb4f4d402d5e16d9c6caf81
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/datahub-ingestion@sha256:1e6363ee9c43ec93b58dc11491ea61c9c201b8acca18ed5e2fafd20bfb7f6e4d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/datahub-ingestion@sha256:b205219c1885c8ca619495341ea15e84553d6edebc8404a83eb68568c7958ea3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/datahub-ingestion@sha256:b08f335332263215552eeaf61eda183e50474aadde5afda46320a50af983624d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/datahub-ingestion@sha256:117ed4a2803c3c66f4eabbe9dcd524ad62c93aec1f72105d7f95dabfeeb04a2b