dhi.io/hubble-relay
1.19, 1.19-debian, 1.19-debian13, 1.19.8, 1.19.8-debian, 1.19.8-debian13
sha256:65cc2e9874ff4b93b7a38fa2e7ec89e6a245ccca96eb2f56ca831329374c1a23
Manifest digest:sha256:90288de3715113e12a4c231b599cd31a8b6b85f8c3b449263d74718e91a9ab0f
Size
19.20 MB
Last pushed
9 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/hubble-relay:1.192. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/hubble-relay:1.19 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/hubble-relay@sha256:07bcdc8a3e611ebea175e8a7eb2e6bdba63bf377e71e48970c656babbb936447 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/hubble-relay@sha256:d1f040ff4f9c58abd0008cfaaa77dcb3d212386cd8d61a7380ae650b7e47c069 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/hubble-relay@sha256:45d1faa3e229b06e94737ef5beff390f5922bf23549ea40d04c00a5bcadfc9f4 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/hubble-relay@sha256:d86726cce7f819d8d5914f78e00747d5ea2f35b0af69fee3087bd6d39c8aba70 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/hubble-relay@sha256:5357e50cec640a9dd9239ab1e832252fd7ae54e0e375b87daa0710023d303ea8 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/hubble-relay@sha256:6bd50a393778425180af55af82248719e38db674bf9c6b41a423ac3c342685e6 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/hubble-relay@sha256:20146ada360afbde9aa278286f64fdfeb2ef8bb58a95e647332a88d8deb739e0 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/hubble-relay@sha256:74e7c5a5efbec5dd4ca555bbc07c60ed408d75eca01f4cd2e08e56ee6b6a8b66 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/hubble-relay@sha256:83eee15e8f8d471d04416302df2905fdb6891164838a400771cfefb2b575d3bd |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/hubble-relay@sha256:5ce7d357fc23c0e7033bce93f8d76109f411cae7d95b64476d6f986054c696c5 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/hubble-relay@sha256:9743907220d489f1639a768c900002b080d31306972882d704254e3a27217ca7 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/hubble-relay@sha256:fe47d16b87d4b3d1e38955ee9a27cf899a9a1c4efb3fc00f4d482505bbf3113b |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/hubble-relay@sha256:39ea934f1912e12483d35a210f70abfe999ea3989f4d985e8e163c5e2bd0fbd8 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/hubble-relay@sha256:ebc1d0f8656425c20ca02351fa45030fdd7ab74b7d35c1c86178161c417b5606 |