Sign inSign up
Jaeger

dhi.io/jaeger

Jaeger 2.x

CIS
linux/amd64
alpine 3.24
Tags:

2-alpine, 2-alpine3.24, 2.21-alpine, 2.21-alpine3.24, 2.21.0-alpine, 2.21.0-alpine3.24

Index digest:

sha256:1430e31ab349bb65657fdb55b74f1d3fb4ca8b95afbaa83bc185df6e6e9ab302

Manifest digest:

sha256:9c944aba26688b9d7f3dc954f7a317ccaf62822b3a4279d0b96c8f9d45d950e9

Size

23.94 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jaeger:2-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jaeger:2-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jaeger@sha256:0181b44a9417ad2fcb4672c1881b5bd6a9976cbc07fc3199f3263c0570a6154c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jaeger@sha256:786213a61485992737effdf5e541c9f30d97e522921de1d67a610c0290ac8e87
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jaeger@sha256:cda97262cee9a88f067e1f7b7c25406dce66dc4d2c17f39e7dede6ce84159ee6
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jaeger@sha256:7167a7703f22e3b71e67dee1fc735cf01ec6e4f22f1447e55ac889a82518daa9
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jaeger@sha256:f472a495958a62347624f521976e254717b0c9d9735a037c05f10f9be1d8301c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jaeger@sha256:db42e917f40ae37a343b9dd60b12e1abcb8ca3163e6a2c8d351a7d84637db0f4
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jaeger@sha256:faf47ad569524a5a42fd896e8554edba12dc816bb1b4134c8ac40fb23f499191
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jaeger@sha256:3f703ec6d05262a78b7df109f3fa137c79b6a3a5186b5858adfe6e881f14dec0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jaeger@sha256:33084dbf535afa8e595b807ee51e423d0fcd9f9ca27a968983da7ff8982ec2a2
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jaeger@sha256:b6a50373f71cf858958ee67edfa6f4e89cc23d307c415392529caa19fe0de19b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jaeger@sha256:225bad86affcddebad0552690d9bd79e6a61a4d1a84384eac3231fd1c460d3a1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jaeger@sha256:5bea574da2cf30c66d05c9e9c0cba8726077b696b2dc5213deaf175d01844c59
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jaeger@sha256:6621fcc7dfc1e76e202fe39d94da6760879f199ca84b5b01d36387bf6d032ac2
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jaeger@sha256:c25dc6ea3088c7efb604679f4eba23b27e0ad6a726b658e1067ec1795dbb7f68
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jaeger@sha256:02986fca07f29100c0a9e1bff913f65a76e4483dc0a88c34e297c06ed4d65051