Sign inSign up
Cilium Hubble Relay

dhi.io/hubble-relay

Hubble Relay 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.19-debian-fips-dev, 1.19-debian13-fips-dev, 1.19-fips-dev, 1.19.8-debian-fips-dev, 1.19.8-debian13-fips-dev, 1.19.8-fips-dev

Index digest:

sha256:570a8889e5e7b4cc79436eea32732116a3c26a746e3ea87cdcbb4f9f78532b1c

Manifest digest:

sha256:cd4a12636fc0b9e9c894fa1b29a5a62c7445dbe1e3eca6110dee299229195479

Size

62.14 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/hubble-relay:1.19-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/hubble-relay:1.19-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/hubble-relay@sha256:3ac4d97dbe3dc7fc8e6752474ede3ba121676e471f5b67100a056ffaf5f75848
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/hubble-relay@sha256:c4b576b03a5b5c3102474f6c357df51a41df2944d595c190c71f453cace8b209
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/hubble-relay@sha256:99a49d5883e355780bcb9b623a66fb04b61c84c87e880fe879eda5445607bb86
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/hubble-relay@sha256:b6e9ba826cb2e5b46c8edfffef0b88dc2af9e8a7fba46f741f9616d8821ae917
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/hubble-relay@sha256:c42b43a3c2554dd8edb3bb6938bd838561be5c57677f07f4b49ea57f929cb71d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/hubble-relay@sha256:4614538d0e0c61317d36c362694addb139122f45667e8ffaea05ddccd1cd2cc4
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/hubble-relay@sha256:8f3e46aabc016374c9ba9bed37d6bf1ba688d3eb6bbadd75dd13bb2caac0e491
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/hubble-relay@sha256:df5a2fda0b64e75b710f314b767c0e6c57e0d43047aeed6504bbc7c1d50567c0
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/hubble-relay@sha256:c31330b85778c1e1c770e27b44734d44743cabf77b7b7da62abf340d25599f91
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/hubble-relay@sha256:dabde01acab31a3f0eb670dd5f84b50760d6b9c0f595b777c71ce36b63e08ff6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/hubble-relay@sha256:35a90951494a61d03ddc4a752a3ae6ae85c3d3dcb8a35e313591c7c991e2e8b7
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/hubble-relay@sha256:d94fbc0b108ba252df15ef8a3796bf2d328f1bf78e8d11117f1ad0461728752c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/hubble-relay@sha256:e68921f9b568dd9ed6f606921e561d2c99f4acf002fe092fc2a2d7db241b6bd9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/hubble-relay@sha256:ac72beaa303658462807833c505fbc57e36a983c67f7f879a1b0ae77de1b7c67
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/hubble-relay@sha256:4a463d015a7077a5d6220f86a21522e1f32953722478072f8cde845fa2a9b01a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/hubble-relay@sha256:14184f04525f6c7f23002dbf209d20908526840df2d82c84fc1ae30546b04eb2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/hubble-relay@sha256:1fba0c59399fefabbe5f705ee99b5a55c331a4b4cf51ed50c3472129bb67f0af