Sign inSign up
Jaeger

dhi.io/jaeger

Jaeger 2.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

2-alpine-fips, 2-alpine3.24-fips, 2.22-alpine-fips, 2.22-alpine3.24-fips, 2.22.0-alpine-fips, 2.22.0-alpine3.24-fips

Index digest:

sha256:6755c9bfd90815a77946c7dc293dc29e13b5aa5a5e30dc361dbbd4174d9519e8

Manifest digest:

sha256:1227cfd6911cfbbdddeaf5fcc22f7c154868c8f786d0bba14e835b79d5d56684

Size

27.47 MB

Last pushed

13 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jaeger:2-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jaeger:2-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jaeger@sha256:51c7acf92b430b9c8f350957f011699dbdca0f23a88032398e07accabd63ccfe
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jaeger@sha256:847a6a9a87508a2e2f54bc6f83cd0fb693cb3d2efcf9f24fad96ff4b2f42bc4d
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/jaeger@sha256:a35b250002218d91fd00d9637627e12644c4bac87e1f1920d1b0fb7278285a2d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jaeger@sha256:960854261c65d0f1bee1b7edcb6b9a190d9d8fed434515956ac9a5d2b3402987
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/jaeger@sha256:8c3d2c8f8c840b298c2891955937eb7346a9ac6284ea6d6b9a06edabc47a7a2e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jaeger@sha256:2d53bc9addb8fa1163b8a7cf041239878afd600b0c9d2d77dc4fa92dcb730368
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jaeger@sha256:42953f4fcdc5bf7073140a1fa984d3219bcda6df7363dac03ab7f99a0ecf28a4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jaeger@sha256:4e60d544f472fcfba882807fbd84b494e761b0b48770fa7a04fe8214e70f93ca
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jaeger@sha256:a681299eae974136a125f895c8c52539f71802f635ef2700fa04f89e98d8b6cc
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jaeger@sha256:730b2e1f0e9b1c1b295b85fcd35affce9fcba81c3ef98e6643a8fa53263b5f10
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jaeger@sha256:7247e728b906023069d577fa9fa185a3b2d437793440b1b473f24139765a7296
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jaeger@sha256:65ed5718e4b735ef275c52c1d957a104418d7fe1c88a2df0efc9f53133a06877
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jaeger@sha256:d0e467fa117bfecffae3f67504033f7fb87c9fd9b06f85f9f9f1c6cf456475dd
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jaeger@sha256:ee10af49a8293edab06ce30990d09f7502d6c4ee6e87d5770c3339a312967d09
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jaeger@sha256:9a0512d93b47bfd694ceff403fa67ede2beb4c51ab4a71b7797a607c2e56190f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jaeger@sha256:d1abbf7828428230201cb57c726843b6dae787d413668062556fcd2ae4d4a82f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jaeger@sha256:0ae558e004665ced536fe88e252b0934e5308eb2a4a60219fe24d2640b2e5f77