Sign inSign up
Cilium Hubble Relay

dhi.io/hubble-relay

Hubble Relay 1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.20-debian-fips, 1.20-debian13-fips, 1.20-fips, 1.20.1-debian-fips, 1.20.1-debian13-fips, 1.20.1-fips

Index digest:

sha256:a7c45d4689f004c97cdba677da52177b676adfb92d5fcc8a8d51ea5ab3bc2651

Manifest digest:

sha256:d8e4239c3f26c6f8398d8ab9122fa6dd47a1e7272bbac5efe6c7f6d4ee0639b6

Size

28.13 MB

Last pushed

15 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/hubble-relay:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/hubble-relay:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/hubble-relay@sha256:ef1ef33f15f8eb1b27af1a7620a1af6184f8422fa5b0069f4e1a8cb906b04744
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/hubble-relay@sha256:7c8dead1835c1749d02b46307a87bb3cbd3231662c2edf32180aea09708eb1db
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/hubble-relay@sha256:62389f4c1999d99833a1479d1ac96a5a858fc2c94a5008e9aa89954155efb4d4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/hubble-relay@sha256:e8f348d7f3640944156264faa3b952f84fd49a7ef0996e12e94d22e83d67c153
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/hubble-relay@sha256:7150dc87490d62109b37dcb659bbdc3a7a307aa8fdfc9606a123c88294925446
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/hubble-relay@sha256:450e4b34565f0b05d2c0fb2df95dba800feb0bf60cdba33cd9a8f397fdb6866c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/hubble-relay@sha256:1d651c1a5f48a2e8daee0e2eaa2a5fe98d0037b81ba3e1cd9b1073d13c8ff806
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/hubble-relay@sha256:99e16c8050e2b63164974a16b4e6775366c1e182fa6dd8d61e8f7796ac828c91
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/hubble-relay@sha256:fd0aca529b44be5182e7052ee86fa1454a65735938e71f92812b239861ec82a1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/hubble-relay@sha256:fe5b687f6b11bff99b7b9016bc8fbe3b3e8ccc736d58deb4cac814107bd30f8c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/hubble-relay@sha256:681813eb0e35e8600aac7a6b47008e24fa4130496fadb95f73438b10e872158a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/hubble-relay@sha256:81b77484703fe59ff66d85d0f0c857ca4f9f2c327e957fbd27c7b0b10915fd84
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/hubble-relay@sha256:f946018a56f4f2e0bed7ba8a9f369ac736895f4b8fdd323ab3dfa82b19a3d88a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/hubble-relay@sha256:c62e26a625338dcad27535357498ac40cbe5d6d110fbe74230cc3d9d69f06ce5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/hubble-relay@sha256:b0fdea6639c27516dd7c3ca8d854fc63ef3d86e4484ce7b2aacc05a7abb26da7
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/hubble-relay@sha256:967de6ced58bb942a0c0f828eac501ead528cd89af62fed956ead2951fe8be67
SPDX SBOMhttps://spdx.dev/Documentdhi.io/hubble-relay@sha256:af7e2fde56ac00e4c009c710987274646d50aed00b2c9696cef278b4cd7b02f1