Sign inSign up
Cilium Hubble Relay

dhi.io/hubble-relay

Hubble Relay 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.19-debian-dev, 1.19-debian13-dev, 1.19-dev, 1.19.8-debian-dev, 1.19.8-debian13-dev, 1.19.8-dev

Index digest:

sha256:c3f81c35209499279542e9a8ebaac5939ba9422d464a0cee64568e99507cdefb

Manifest digest:

sha256:72c6177af7840472f7b4cef91a95a93846a973c21797ccb8f0dac7814ee8574a

Size

61.38 MB

Last pushed

12 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/hubble-relay:1.19-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/hubble-relay:1.19-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/hubble-relay@sha256:a232eee1600beed9f9894452923cd7582585edfafd17feaa0b25a2c5bde87f4a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/hubble-relay@sha256:2ad289d603205812b08ff2408ec51fd80194d86ff81bab3c3b0720f027b575f3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/hubble-relay@sha256:27401418584efee96325f39a967511a1815a6f305425dbcf3e45561db7c4fe13
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/hubble-relay@sha256:15757dad6518c5ea66aa7c69e880a4f3f70dfa81e1239923efa8d10ad4f7bf0b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/hubble-relay@sha256:f4103f7c8b62319fa27ae04d128b5350831780cd9b4e9f121e24863eb762124b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/hubble-relay@sha256:09d67a050ad5d8b199c0147015eff92b5e37cd0cef4c19bc824350311bf52962
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/hubble-relay@sha256:e2b840d5f47c6905e76d9a0f2462ac2ee6e625dec1ddd6ba540a5b39b3decf52
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/hubble-relay@sha256:65070b5dca67d8ebdcd33e6dde91ccefe7358197f447bc107190b7b9d4b5145a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/hubble-relay@sha256:2235c692e892d14a983c91785560755d1f693657969b072c0f31b1acd108d03a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/hubble-relay@sha256:9d77504c4c32ad2aa43436b51183940502a334fcd4be8c12efba51aae7fcbbfc
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/hubble-relay@sha256:91a003f3e7a8dec53ab61761c896a84289ce5e6f0c4c7295ad0a059f9698d065
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/hubble-relay@sha256:0449ea679ba54aeadf38217fad05952d59dc0a7c23a68eab7940a2bda78df267
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/hubble-relay@sha256:5ec5e823e4060e9bef89fcb2f98cbffa6d77ca2c7818e47cafb4a9c48e7bc706
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/hubble-relay@sha256:e94c36681ed07917b1fc05c755b25aa4f377f86c0ebbcc759a62f34dd1e4aaa7
SPDX SBOMhttps://spdx.dev/Documentdhi.io/hubble-relay@sha256:0fef790b92edbff1a963993449592fbbeca139dec643251433f74c72acddc171