Sign inSign up
Istio Pilot

dhi.io/istio-pilot

Istio Pilot 1.31.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.31-debian-dev, 1.31-debian13-dev, 1.31-dev, 1.31.1-debian-dev, 1.31.1-debian13-dev, 1.31.1-dev

Index digest:

sha256:96404e0596980829c78cfc3f764e584bedc37b8d7cf4396629b163b57a466c7e

Manifest digest:

sha256:5e42bdac27ba899962f860d774f89e9af3ea594a0d4bfeffb0aa87a332ba4f92

Size

80.13 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
1
13

Support

Active until Feb 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/istio-pilot:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/istio-pilot:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/istio-pilot@sha256:e7739e0de8f13900f57a5c195de29fd5510f6cfa7151b4d3e8907c0aec5c2201
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/istio-pilot@sha256:143e3e59f482ef6100e69f019d548a6edd384b9903b116be8ce670201f9a134d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/istio-pilot@sha256:af6d9d19be9a0d05651468eb32a439317dafb6880b60718f17ede8886893898e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/istio-pilot@sha256:a353c83949c25cdbd73bffba6076af19c2b65b019b5f4a879a9f91390a931bc8
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/istio-pilot@sha256:d7eefc5c4030c07d66711401fc44443b354d0d0f150c3cb043a90ada5db50e43
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/istio-pilot@sha256:b5ae9d3a3475c1a9195737292425ac90a70305e66febfd3bff3564744419f4a2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/istio-pilot@sha256:0693f3e3925ec99b1b359dfb143f5d7f3a5fc5a633cb04dbdfb1c567523fcc26
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/istio-pilot@sha256:4d77fbd1c12ef0ea94db1a266d53545e4916bf576d002f6f4b1f37db00fd849d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/istio-pilot@sha256:800cec8cd98fd7d83b3996a873974228c0b816334b3c33881929f5466de7ad56
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/istio-pilot@sha256:9a071cb040a6ecc990633833590113b83f004920ad858b9db94b3d341109da01
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/istio-pilot@sha256:6e9f34ce04a25a31f7f6f702db5a49e162493a83a96663b9a11ea720f57eb646
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/istio-pilot@sha256:9982223dc7dc8810738f906fc3971d12b3dd7cba1ee7cb156942b0e19cf214dd
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/istio-pilot@sha256:2d9eb2dfc5c2d583b93159b1d6accd6a7640328837f2d36b6010676082ba03b9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/istio-pilot@sha256:6e1a617298246266bf2796b8aa4efee279ecc51fb1520106c3b473465d2069ec
SPDX SBOMhttps://spdx.dev/Documentdhi.io/istio-pilot@sha256:d564ddf44af90a82c7b676e4e24a337a27e1680278f68c446cf1375748d94042