Sign inSign up
Cilium Hubble Relay

dhi.io/hubble-relay

Hubble Relay 1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.19-debian-fips, 1.19-debian13-fips, 1.19-fips, 1.19.8-debian-fips, 1.19.8-debian13-fips, 1.19.8-fips

Index digest:

sha256:0704357279456fb26a3074cd0a89d1978349157b384a62df2dc42e2fcb53278d

Manifest digest:

sha256:b02eec9f75ad2d770c588172d9f08032b00c2e3a69ae71b83bd5d498128909ca

Size

27.38 MB

Last pushed

12 hours ago

Vulnerabilities

2
8
0
0
3

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/hubble-relay:1.19-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/hubble-relay:1.19-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/hubble-relay@sha256:62850f0705684abbc2e1c21250ae502dc5a13f4201cf4759c7e79c9a8b3cc55e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/hubble-relay@sha256:670079fe3c2300bbebd34dcc33f713f9889ce17365e8ef8398e2b8f03c0437cb
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/hubble-relay@sha256:46a7bc9cc72c8b86d6413ce9cae0f8fe9937be5319435691d964dc94a7e09ca7
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/hubble-relay@sha256:6a1933e6e3054fefd035466aa97b00d98f1adf1189faa04c3cc4d2b6b5bd96c5
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/hubble-relay@sha256:e6dbd40c7f3ea564041a6df9e60b036ca31248896f6cc65cc7beb7e758aaf449
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/hubble-relay@sha256:383124dade9286ee242e683a67c63e6e2c56cdfb6d1340a9cc5c691d14eee578
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/hubble-relay@sha256:fa9bff92902d9b412c4a0e1bf8037ca4375953569cd5a272e159a63265f9d9a9
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/hubble-relay@sha256:37fff5e4e66d267a16fd9cc321c88207e136df03d3ad6ecc12cdb01688fa48d9
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/hubble-relay@sha256:cdebc9810cef232b47d4c91cd7919de3e889731c4af374b28cc8b4f6b58a6dde
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/hubble-relay@sha256:420cd7428461a5c3fe81eae5e30320965a2929a8c5c22e15226ac13d51ec7488
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/hubble-relay@sha256:0a58b2888a1d291044e20303f71888b197e77263fb60c9578b5a82d7d919ca10
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/hubble-relay@sha256:cbeb72ee5628ef93082f993e59ba42ef0120462b279a9b3e5a979895ce2ac3bb
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/hubble-relay@sha256:f35f0c69f56de6418efa95570b28e0a4f1650b60929c9e4dca6677af07f59d19
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/hubble-relay@sha256:8103e8e2ffb529152cd6f154eb13363fec456b5718b239416ee9117de1fa7fdd
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/hubble-relay@sha256:0693138e60b7829cb3c660a519ae3a63b91cc5c2426354b2a48acee8e8625f0d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/hubble-relay@sha256:6a0dc48b9a4bc45d6b66c368f7926d1b929df353583deacde68976c584bc21f9
SPDX SBOMhttps://spdx.dev/Documentdhi.io/hubble-relay@sha256:ed5bf8e474be7db86781fafe5bdbae6682d413e32c2f32a90691aedcb7d9450c