dhi.io/kafka
4, 4-debian, 4-debian13, 4.3, 4.3-debian, 4.3-debian13, 4.3.1, 4.3.1-debian, 4.3.1-debian13
sha256:30f03cc01ea872c679e5b5ee555b7fe53d908daf7178967306750cb802f655e3
Manifest digest:sha256:c3e9885555e5c3baf42514d8562e4879b8b3ddbd674ebe099df8d7d14c8eb84e
Size
187.43 MB
Last pushed
5 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/kafka:42. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/kafka:4 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/kafka@sha256:1e44e3a51cc86f4815f4dca6c21e88ba132e1a1e1b78b8ebe2ee36ea16041353 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/kafka@sha256:801ab734797bf325b8b8b06525bf7d36faeba0068a94948c79dfeb5306a81b1a |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/kafka@sha256:d5395e21ef593aeac44caf41530c57702d288bcb0f9d3429cb65964b0788e8f5 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/kafka@sha256:e7cd224662db4c68e43a9fcbd5253e321c7a881cf0fbd59f9ffdfdeb2520460b |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/kafka@sha256:ffafc0b8933f21fae8e7dcef368361c5e369a7c50907045a56d74cb29ca009f4 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/kafka@sha256:924f9498bdc0faadc3399d4df9d725b9122f175ba07e0ac8820fa15e0f2cf73d |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/kafka@sha256:832f2f791d82690a90a79ef91de75459874a3765ce562a6c0a43ce4e57df3c3f |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/kafka@sha256:7b165d66a97bf29988de7cd4450a2f41a19714720d01af7d5fd226301c1ef545 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/kafka@sha256:81bf9544bd4413a201b95a78f27ee9078e270f550d046c31af415d2077bf3d16 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/kafka@sha256:0131379ce568c07a6cf820901593219786b217b9770d8f963c34255f4770fc81 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/kafka@sha256:d8505108ff2dabcfbadcabb8510cf66d14653dd1c8651f3a99bcd8c56f62cb2e |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/kafka@sha256:23d0a8274ea5b96983801d74eb5069650549f6a1a4b79ee780ce99e477d006f0 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/kafka@sha256:ea0cbe41fb09a4eba10ab755ae44230df24e13e7c41c3e21e2ac7d32651183b1 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/kafka@sha256:e408c14152b40ea3353ce05839f4b5d9e1ebc5e024ee5eb1bfd11d6cca919364 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/kafka@sha256:8bcc4a1df7a0b292febaa73058eabbdf4e05bffd4d41254450e1ab7a9598f5d1 |