Sign inSign up
Cilium Hubble Relay

dhi.io/hubble-relay

Hubble Relay 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.19-debian-fips-dev, 1.19-debian13-fips-dev, 1.19-fips-dev, 1.19.8-debian-fips-dev, 1.19.8-debian13-fips-dev, 1.19.8-fips-dev

Index digest:

sha256:98d925295df3d249983c2f8e812fb654117a1eaaf2f6265fad3d0b5f2414fd17

Manifest digest:

sha256:c383040c7a0441a66c87c44bed3dca1511170ac31ff3c8e0ddde461a109d8e71

Size

62.14 MB

Last pushed

10 hours ago

Vulnerabilities

2
8
0
1
3

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/hubble-relay:1.19-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/hubble-relay:1.19-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/hubble-relay@sha256:ff0f1b16585f2afb5549792fe7d8890ed4b92f49b388bd7872eca2a966dd85ac
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/hubble-relay@sha256:8c02879518d173cdc1ec078188e0d5c0eb42ee08c721d13589b3b7d3441ec335
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/hubble-relay@sha256:6b0a99dc2f4837f91acc6761bd2fa5516bfe402f595bb6c608220fdb9cc3d6dd
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/hubble-relay@sha256:348e574b88a365e7608763f72408932d19ec877765408a4dc3e7158a5561498e
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/hubble-relay@sha256:f34b48ffbd87887e7801b4a7df04726153f19d1482f872695ea36b590cd1c8f1
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/hubble-relay@sha256:6cd3dff93d4efbd7fb0e6bfa25f11745c7df304800c7e5b7e8bb04423b8fd616
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/hubble-relay@sha256:a47491816e75f6ddb07de6016dbbd0b7bd13b1341bcc9cb523e13edadf9e0aab
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/hubble-relay@sha256:37a781e603921f391d3cfd31d8efbbb1f3ecc97523f5ca2c61d029288ab11f79
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/hubble-relay@sha256:f3f566ca1ed3d16b2c715176c20e381e79a480d1f6d4b88c01b2a59ad9530938
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/hubble-relay@sha256:29f3ede14d36fefa3714a0357d55461653772c0f43a41900369e7ae66f039acc
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/hubble-relay@sha256:9a7caf727ef4843d7b127c4db9d1aab91ee152548bd200bc5781f5870e3a84cd
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/hubble-relay@sha256:6f265d8ac8d484cf2a627c0eafef06b8f862e6839a93a1934c59ae4fd65185d8
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/hubble-relay@sha256:7fde77f588361f26455c9c4b3caec6de18d9d6feb9282a43b70c74876a70e5de
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/hubble-relay@sha256:32f356d90ae9512b240e5dab9946d27fa52c28baab471801762debc88fe35b83
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/hubble-relay@sha256:ea8b36383fcf5ec8fd025b8091f48f2e49564fef628689dfc8a687ea47230bf3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/hubble-relay@sha256:90949e26e067af8457807faae3c975d84f9a1ce875beb79236f45e022885257a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/hubble-relay@sha256:40de835901446850580249e84836737a299cda51557d88c6eeaaf91f2a8e5c2d