Sign inSign up
Cilium Hubble Relay

dhi.io/hubble-relay

Hubble Relay 1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.19-debian-fips, 1.19-debian13-fips, 1.19-fips, 1.19.8-debian-fips, 1.19.8-debian13-fips, 1.19.8-fips

Index digest:

sha256:7bc5ad90c883cb294c8593aa7d80dc5fdf563bd3662fd16b3e34455fa72a5f1c

Manifest digest:

sha256:1bc2c3ca35fdb05477aa61ca816872a499801c96fe6e48942d5fc91b52ad1dd5

Size

27.38 MB

Last pushed

12 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/hubble-relay:1.19-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/hubble-relay:1.19-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/hubble-relay@sha256:72e492cd5b5ef2758b7c1050299258b4913699d05c125ae58ea12c976d912bf9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/hubble-relay@sha256:44c853c0007243c98159b3a7c42717d418c5d6f8d9e5db6fbd24732992bd62d6
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/hubble-relay@sha256:f4daaa48ca1a941c3d25c3b410da16a1fac38e8a435096005eb70e207762c056
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/hubble-relay@sha256:3ca9055f18b82ca64645d6157f2bc7ccc5643d7a4212cde03ac7fdbefa4ea84a
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/hubble-relay@sha256:9d40c9d1b080e609360928cebf6b6ae3fbd7c14b93cceb4a9607855cf370937e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/hubble-relay@sha256:26421c38fa86d226f68d1d5edee574035cf7886d45aa2d1b2e93bbf765dce1e0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/hubble-relay@sha256:fe44edf6910367cd5ff0a86efe56a2bd2acff68c1c7c2d99cc9782fc23b9b343
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/hubble-relay@sha256:44125f7911a1afd25571ad746eeaaef34228c14cbf5fd826a20d19f6ea19c93a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/hubble-relay@sha256:4a2e60fce50271cf3ff9f4ef1f6e76b3fc5406d0216a9cd3a1055b2e0eceffe5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/hubble-relay@sha256:2703b8978d46bcacddad1258a081219e67ac1d1e881fd3a5b8936f3a41828be1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/hubble-relay@sha256:d2462173d2da202b3b7f73ec59ff050786627fdfd1df95316b4fd9c2ff551750
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/hubble-relay@sha256:49ccf98992fa0f14fc36d95437a7672b0f71c29801e79db2f430de05dc0b96ec
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/hubble-relay@sha256:836fce95221321ac88f70318bcf942fa41f95e390cc87892cde250da7038978c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/hubble-relay@sha256:ac4be72bbe8684424560c3ea2b3b5cccaeefc8049e1faa84627bef19f51c1637
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/hubble-relay@sha256:ebf49668052d815bc15b3961aa939eb63008120d4d0c65bcef9b723e27a838e3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/hubble-relay@sha256:606ea709097b1fdc2a5417fd5d18aef00c1677d4f84e09e32882095aee85cdb2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/hubble-relay@sha256:3f73bdaa20ae686a0359530f07f39bb5538f034d77bc9b7f0619ec053f8bbfa5