Sign inSign up
Jaeger

dhi.io/jaeger

Jaeger 2.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

2-alpine-dev, 2-alpine3.24-dev, 2.22-alpine-dev, 2.22-alpine3.24-dev, 2.22.0-alpine-dev, 2.22.0-alpine3.24-dev

Index digest:

sha256:b1260eb4073af98e13ff405dcbe6938a0b45cefce3608865e903c3b9040701fa

Manifest digest:

sha256:3f0c7fe372884a26d47c5dcd68ccfd67745fbb0e0c231747c4fe44d0cbc1a0c0

Size

50.79 MB

Last pushed

17 hours ago

Vulnerabilities

0
0
0
0
13

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jaeger:2-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jaeger:2-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jaeger@sha256:fe6dbf1dd3d412ca92cea4726a1f97c1ead943dc7d34419ff81a209089f87c7c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jaeger@sha256:bafba85f8a5a08b3e27794b6f90bffde8b05ee8a27ffa8b7a6f5fcabb2ed55f4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jaeger@sha256:d7cef29782e0478e4128fadc309dcafea1ad96dd0b4e8983516e2bbff13505a4
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jaeger@sha256:a98ba5246637f84b2193baaa60eceff67f78b01af7f03e2604734331766ab626
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jaeger@sha256:b6e7e8b83232cd15050aa44b6aef3bf40f3acb969ce75347311d687b2752178f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jaeger@sha256:9200b38d49fabaa1fba25e8976109d6869886e600b85ebefcf928154a1bf7d08
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jaeger@sha256:882987ba8d8bc984b581902ecd933a6a2c72c83f010bca9748810db12a24d92c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jaeger@sha256:fb2955ba2a091fbafacbd3de7585a4e5e3034909f3981a9588a174cb1d0585c2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jaeger@sha256:0afb9f442744758b4f9c8570b308fde23674bcabe566670208a1ab4091df0e17
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jaeger@sha256:e6660aab78f73c4f54aed2fb337b053e96d183c59247b185bc23e7bee603c1ab
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jaeger@sha256:2c75f682ce53df58f721b99c2e06fb5852f57926ad244b1f56df84935c0c2812
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jaeger@sha256:edcfd2ddf88d9787f7e7461cbb0c5e1f8808518dc8c8c2d117d236c67d483229
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jaeger@sha256:2877de00146c3b9ff1301b5cacb586684897e7b238f4f3e8e4bf2ac67fb052f9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jaeger@sha256:36234e7979e43c0743ebb9f7b66f83297444461f1ccc83e8bb280d7ad640590e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jaeger@sha256:2091d7dd5b2ccb2ed11126a0f3c931b87f4fe539c517f3432a84d87c511755fc