Sign inSign up
Cilium Hubble Proto

dhi.io/hubble-proto

Hubble Proto 1.x

CIS
linux/amd64
debian 13
Tags:

1.18, 1.18-debian, 1.18-debian13, 1.18.14, 1.18.14-debian, 1.18.14-debian13

Index digest:

sha256:8db6f182384b7622f81e76e6813b060b77350fe3603bc3d6d4e2a93fb21af112

Manifest digest:

sha256:af81fe522bdc08235bfd1145cd09091dd17e94e98767e1e375f2ebc75fedd223

Size

15.76 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/hubble-proto:1.18

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/hubble-proto:1.18 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/hubble-proto@sha256:a66a335904becaeddfde2674952efb32dd3afa244e39781326f1871c7763289a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/hubble-proto@sha256:b8149946fc68a29d579c011f4b1b8632fd3e36c724c15d7a7b07b2e764f625a4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/hubble-proto@sha256:9c14ee7fa5da2daa55bde4bace6fc4a0ba49b73595db3e6f4b2d0ee58d81f3d9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/hubble-proto@sha256:17881690af41ba2997dcaa87e59902fc48a8e12ed6b84729c6138659f56d5dbe
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/hubble-proto@sha256:c05d0479fb1b75a44a04becaa3c9d3b401ebf86882be2adf07e1abdfafb36a15
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/hubble-proto@sha256:b83c4762576083fd982101fe02496cc518f2525ed6f8eca9a2408d9072438e8d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/hubble-proto@sha256:f566a700ed35b04a1a5a7d12499b89c4ba07f97b9419f0a3b7e8086c72da9ba4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/hubble-proto@sha256:84e88564aa6d4a03b0d08df4d9a4ab13334f7d68368777babe90f9f6a6e9d5a3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/hubble-proto@sha256:d371ceb519024348a34638cde77b820e32c669cd37eba76cee8fcc3803cb420b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/hubble-proto@sha256:cd8c5fc2843ef7c28afbec33f5a01ef4deec88eb2d37607232a694cb04c87bc2
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/hubble-proto@sha256:295c18a8b0739f0e2130cb07ceab1563012eb005f36828016ca361ab5d1e5565
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/hubble-proto@sha256:67c7e01ec35a72d0e9ea5004a52ccb1577511260023778bc044707933c7425b7
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/hubble-proto@sha256:24e39bd0ff6c47376e2ec4a6812499beec044a53932b42d28f273fd6ecb0270c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/hubble-proto@sha256:93af22105c860b5da4e9568e5502ac8f706e950999e6709220f0741c656d8823