dhi.io/istio-install-cni
1-debian-fips, 1-debian13-fips, 1-fips, 1.30-debian-fips, 1.30-debian13-fips, 1.30-fips, 1.30.4-debian-fips, 1.30.4-debian13-fips, 1.30.4-fips
sha256:dcbb92a7879178e2501b02c0435ecc6b34579e400e83e0d456a5a5f089f247a8
Manifest digest:sha256:be521ac71a5debdf33de5a2efc8c5e2a15110bdb94730e8558b726fd60431e45
Size
39.78 MB
Last pushed
7 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/istio-install-cni:1-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/istio-install-cni:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/istio-install-cni@sha256:b1b55dab48825cc427361578821f7d811c597aa7dcfefc49251fa22825d48a4a |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/istio-install-cni@sha256:4c5c22707b15971520ebed428bdcaf07039993d98676516aaed3096c8a7a6f95 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/istio-install-cni@sha256:df5906124022739e949cd53f95a4c99c339e900ea58f2bb6ccd90b3aa0744240 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/istio-install-cni@sha256:9875fad7b9a815d45413798a32db83396d20d31e9e59d9b9d22edb9012b876ce |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/istio-install-cni@sha256:5a8939f9a0e5d8c611356c56eb3962ef6cee1361bf84961ca2f4e8b967db645e |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/istio-install-cni@sha256:03d08e7210a9b8e03b6378702cfbe027ca2d9c0c745ba721a508a3ef57b322ee |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/istio-install-cni@sha256:54fa0a25f25e5ba420128e5cd0db6adc5be9ae8b4a3afc3bd2173e116cfda770 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/istio-install-cni@sha256:764fae73fbd6f0892598ef5ffe48e322ac4b9a40db329ccacfb359ad63cf963e |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/istio-install-cni@sha256:7cb495674d5bfa27f93a92c9cc63d3b0f40db29baff3cdf64e8254af2d899ecc |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/istio-install-cni@sha256:a47b9f476175c700930e7e411130a3766672198a325f6b650961d7a040e832d7 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/istio-install-cni@sha256:340711d147a0791930eeffc2bcabd3842b3e59a19c99f0f01f0005ec2ffd1c3d |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/istio-install-cni@sha256:4f22f2bfc5c6d9ca3fda02e8b5fe8fab5c2af319c09c2cedb89cda179eb4daec |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/istio-install-cni@sha256:47ea3a94484496cfeaaa973b2c9f952f312c8fa27738b690222ce60ce9f01dcd |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/istio-install-cni@sha256:0d592afd21cefbe6e33e1baf6671e5273097283b7b2ae4236e5a7156779d790a |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/istio-install-cni@sha256:e8418a14c8ceeb0d31f1085cbced4143e0377469426e61d0a01dc0b639ed932a |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/istio-install-cni@sha256:3203784ec16e7ad1a9b1f2b14646bd05c83bb01a332200cb0a06ccd1d9110654 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/istio-install-cni@sha256:72eaaf1cf8b480b9e75feabc7bd2f3de38f1293406fcfc490a19a72186df3e27 |