dhi.io/kafka
4.2-debian-native, 4.2-debian13-native, 4.2-native, 4.2.2-debian-native, 4.2.2-debian13-native, 4.2.2-native
sha256:3a3a653e18709851c513a261c542eab3b2faf4e4840e0413dd5d3445413dd03d
Manifest digest:sha256:11e0ed19ba7661f168c7cd644c826cd98a427f61c3e64368678efb667d8c3ac8
Size
49.08 MB
Last pushed
2 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/kafka:4.2-debian-native2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/kafka:4.2-debian-native --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/kafka@sha256:25c81f1595cc03424ea926d220a327c13b583feb62917b212baea8b79d2435e0 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/kafka@sha256:e68ee89b0a12a2f140907292660a633dcc0e71057afa137f19f82254582a45bc |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/kafka@sha256:8533fd2ae9209d94ab35b87e85df3b46cdd7cffdb2ff267d774662908261ca60 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/kafka@sha256:e9898c3dfad2865fdf2b5d9a0642488b1b1fce5958cbc372335940170dc6469e |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/kafka@sha256:37de0229f568e46610b9d19f3ea0b1798d9a3fc7423b0b843c54e073c412fd4c |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/kafka@sha256:977ad942d3c3fb9f26b96bc6cbfba62591ce45219c9e561ac7042354985aed00 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/kafka@sha256:7b79e1146ec2a9d04e8c4ec044064a003e10745711602ee2a35ac7da3f470606 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/kafka@sha256:c97c7370600eea3a01ff6c39b7914943ccac0e5bdcca17c471cce59f2a188ba1 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/kafka@sha256:1c6bd9d0cf8cf8d2a5e0548894a7acafdb00c261ebccbfa5b46eff0476ba9ba7 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/kafka@sha256:4f026350efa9a07c24768d39ef9a4627a781f3f107db10a3506d99f54e1848bd |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/kafka@sha256:a2fac8178a8b5ca94d734888857899985420c43d0089bd54c63440cda8c406a0 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/kafka@sha256:3dc88ecb5f6fb82e327067f9d50668215b103e97c55a21c3c59861db54d1f583 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/kafka@sha256:02730e3fe1d186626169fb140b6beed6f1c808e7f75875c797c07b3d1d1f178a |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/kafka@sha256:66eb5a2e258929096ee5076280bc1f088b1cdd21d665cb389309c487116f6634 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/kafka@sha256:b6c0fc8446516a0eb6cc38a02c0ccf176669949cd2f773873e75f5c49359aa4a |