Sign inSign up
Cilium Hubble Relay

dhi.io/hubble-relay

Hubble Relay 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.18-debian-fips-dev, 1.18-debian13-fips-dev, 1.18-fips-dev, 1.18.14-debian-fips-dev, 1.18.14-debian13-fips-dev, 1.18.14-fips-dev

Index digest:

sha256:a64c63731719e77c8c0ade039cae3b9cf5ff92cb73601fb126f6787a152a3116

Manifest digest:

sha256:aa608f0f25dcb39f2df03d8153e3887066423af4fb0e829c9c91a18dcaac21f1

Size

68.85 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/hubble-relay:1.18-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/hubble-relay:1.18-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/hubble-relay@sha256:8afe0a29c26a2894c1c9d3d01756e2858ad23d788408d3c4154976d08773bcf3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/hubble-relay@sha256:b54ca67574ea8c741b6db2f397bde3dc166e2f8155148be8c921af1af53976d3
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/hubble-relay@sha256:eb4fc5237e71273d768ebf98e83147b9a1f99e0791cdd3435e3770bbd6ec1c4c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/hubble-relay@sha256:a1f5f934bac22eeb0a702b7ab6122fec83f076d1cf16fa9e84cd63d319ac5724
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/hubble-relay@sha256:3514d213a6aa535ac92a71583f42bb08c2024b0cab317a35410035077428c201
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/hubble-relay@sha256:cfdecab97cd8786d69a6f0f0b7272ec1d2825ac379251812a978fb571ef76fd5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/hubble-relay@sha256:53907a222f87c152ae3025b0fd4e96f6ae0fdc3592b411d44a2e4a0873f62d75
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/hubble-relay@sha256:e597d741f999c778e99580caed1b8714ea971f01942e8ccdbc396b92d492c5b3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/hubble-relay@sha256:c9e7e3db6aeea20bdc5fb8f018c7b34c94cd0cb8a2969c15dceeb8d19a732c6a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/hubble-relay@sha256:ebd5570d1f36859974dd6f5c411dbebd75b52f243a730c8f262a77f56b9a4607
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/hubble-relay@sha256:e39783a076479bd78b2aae6c69a876411381823b6b2001b58d5893c69896b320
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/hubble-relay@sha256:262e6c17bbb3e8d7eb35f1a799b5618a0b9a4abf8ac1228fc70fa293ebd1d0ee
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/hubble-relay@sha256:936a19441131469145c2c1635ab1fa21855e375e3812f39a09a1db9b32d49e34
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/hubble-relay@sha256:19aa988fe246a05512143e4749df3bc8b36e9346804a5c6f4f83d0408654fb2f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/hubble-relay@sha256:5d46b278bdba35a930f0fd33aeb1d5cf931ec5785fa46b7d69afe17cf6d27ce8
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/hubble-relay@sha256:fc20da02fa6e22eeb8c9fa4df812b59e624a78183b4ffd1840bafbbd79c01f3b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/hubble-relay@sha256:1f2c164db63461288c4fc7687b44b337b0d941cd67e04662910398030a5c3b31