Sign inSign up
Jaeger

dhi.io/jaeger

Jaeger 2.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

2-alpine-dev, 2-alpine3.24-dev, 2.21-alpine-dev, 2.21-alpine3.24-dev, 2.21.0-alpine-dev, 2.21.0-alpine3.24-dev

Index digest:

sha256:dcb7e8a7054ac9daff9edae5e0fee7ab8865cdc0a3919fcd6519f1b2e06cf9d7

Manifest digest:

sha256:44a6c00699cd3566461212cb43a1eac74191ae9c75203f750a9adfa2c772d864

Size

50.55 MB

Last pushed

21 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jaeger:2-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jaeger:2-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jaeger@sha256:c4968aa85f186228e55a90afbb8e99c52d95318885f17e89ffc81c585b9bb38d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jaeger@sha256:7e17af865a468735994e13779f730411c0bab9f4f78f5b74a4eb4477aac4fd93
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jaeger@sha256:15d85057a893aa013dce8ffab10d4eab9255f07c60acb4f8d0df27e64130116f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jaeger@sha256:39ba9f3fe3461b1c4f350ac5ffeaa722534f75d9fcf325a6e01bd8e269f8a4d4
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jaeger@sha256:f3e16632cc4cf55e7f6bce3398d63099c2fe4289ffa41d90a84702fc8511854e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jaeger@sha256:55caa0910ba65f9443b178464dace5baa704450cb8533f33842a88db19d67076
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jaeger@sha256:7464e826eb10c5ff22da52b8a49077ba487aada9f02e8e0608285c68816864fb
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jaeger@sha256:f89ca2f3a78bdf1bac97e602b58bd8dfa7d289ff3caca612ed7fd1d23df89271
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jaeger@sha256:ab9602c6aad340204ede473a250e788416c989c7119814f8b29f0bcd45d1b4c7
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jaeger@sha256:ce5c36d79dfbda86ecfd762bedd6015bbf8c280ea3c65a60b172d9bd40e8e052
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jaeger@sha256:5205ed7f582fecb4ec8e8599223993d7b511bdc8502a681e3caffd2661467262
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jaeger@sha256:e772b11f34b0f06321d15c1a7abb5c68791732b87462b5a4bd6ca70956d8cb0c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jaeger@sha256:129ebf7c82b8e1de3f363350e270d5f09bb7fcbd547b3d6b0c1a9bfd219fd722
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jaeger@sha256:27ef1382041cc3899e8982dd23655d4524158b82c49d7abf7c1e6c67ca479344
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jaeger@sha256:24d5640201db45d2dea4aebda2da8a8e1ffa5e47bd7351ed244b2d8793aa7233