Sign inSign up
Cilium Hubble Relay

dhi.io/hubble-relay

Hubble Relay 1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.18-debian-fips, 1.18-debian13-fips, 1.18-fips, 1.18.14-debian-fips, 1.18.14-debian13-fips, 1.18.14-fips

Index digest:

sha256:480d1447225dd1575589418ed356aa7614fea082670492840505a03b9babc01e

Manifest digest:

sha256:10169c69be9b7bfedb39f5fea4c637b40117a0628ca20e3c40be633ffe078af9

Size

31.03 MB

Last pushed

3 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/hubble-relay:1.18-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/hubble-relay:1.18-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/hubble-relay@sha256:477550de1ee8aa7ac8d36bb2abca66bcfe4ac35c0f5d994200019f6ba64795c9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/hubble-relay@sha256:e2388f10846b8296e6378611e16e8229d7f24bcb53fbcd1d7e2b0c7f553b4fb0
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/hubble-relay@sha256:a53313594d7f52187e185fc3535d82f296f3548ed04d9bf15316ff26163c0a70
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/hubble-relay@sha256:57fb376e400d7fac5cde944d8321d8b002f1243837cd1e83688a2ad70d462402
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/hubble-relay@sha256:b642ab29742e0ab0ff15b702cc0815aaf3bab143735f246ba17a385e6b02ad25
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/hubble-relay@sha256:5be3110d6f2964a43dd8494b74153462701922882565913c54b6adbed0b6aaaf
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/hubble-relay@sha256:32d92a5ac3a62c41e37f00b7f67028cafdcd84e52eca6910881aa864bce95ac4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/hubble-relay@sha256:840875a7839a60da9add6b49de9f6633cd56e12ad81f70faae950df1db21a774
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/hubble-relay@sha256:5a92f42b926678c3f65136176205e043166f1d23334d7cbbc1726aeb2f723463
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/hubble-relay@sha256:cc1581cbe57ac442806c76d671545e084bd5d042c102c61e2de4d84b2766a991
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/hubble-relay@sha256:7f461c253d63d53e12e1423699ce9e9d3ac55ccc658a1f0597ab7cc5165b2f31
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/hubble-relay@sha256:049042366f74931e22a9fefa226639cb64b733fc0b72b016248cdc9ec134c510
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/hubble-relay@sha256:1a6a0115ae1bfedd2b9d861439b1bdc9732f35d5b91fbe5a30d0f1fd960a989b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/hubble-relay@sha256:0528aa755c5b22080db8386ed0d24c7b8299f5c6cb5a7673825a8d1d526737b9
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/hubble-relay@sha256:0e8d3aca94c8758de9476b8e16da78e0d518d355ecf1d0aac67326da8e7baaee
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/hubble-relay@sha256:f31065aa3187609983d963d42f7ee7f74a3460f7889a99b4ecd5a603e3b489ee
SPDX SBOMhttps://spdx.dev/Documentdhi.io/hubble-relay@sha256:75b4b75aafcd59caf6ec5e319e622d24ad21607532b96094c25ead26bdc88f77