Sign inSign up
Knative Serving Activator

dhi.io/knative-activator

Knative Serving Activator 1.23.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

1-alpine-fips, 1-alpine3.24-fips, 1.23-alpine-fips, 1.23-alpine3.24-fips, 1.23.0-alpine-fips, 1.23.0-alpine3.24-fips

Index digest:

sha256:a1b6885e9bff814cb71e968bc053ec043de4ad0ee6e8c7f34528ad93c7a70311

Manifest digest:

sha256:5883b4cdb9b9332e854ba471097f818902201a0ee09f9b6999c83cb67b2739c1

Size

17.95 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
1
0

Support

Active until Feb 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-activator:1-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-activator:1-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-activator@sha256:8734e87dae63a9a223352d0b82ac16cc990f0f4444b753f21c9b8b1ac60ec652
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-activator@sha256:e29b7bb54241c4d05a7bd3de540a864fb006f25737efa6dc23c4437f047d8463
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/knative-activator@sha256:ebf51be6fc7bf90704f157ab0b9a7a48ff92ed593103c5ff1d19c63a088fb057
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-activator@sha256:02dc6440b0dccced58bf0465ee4ec68857274c50224fb3c1919592f91d545f67
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/knative-activator@sha256:a3e465abf417af3ec79635382223d505dfa59d64c0f74beeb7859cc3f0c9f8e7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-activator@sha256:b250b1bcbb50b32a89e876380107a716b5bf30a7f25914c94d03d5baf01532e8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-activator@sha256:cb5b17b37a4d14dfbddf2dc01ef8dc100aab22dc9369f26b1376877e79aab63d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-activator@sha256:e36e8d7bb90c454baf9d5f1f82be3d67a72a1b636ecee04f60763da4a8d0b68a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-activator@sha256:486df1e5e1e72f9b98da510150be945372461f150cb5acd43f0b774d6ad5fe77
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-activator@sha256:a9497e0d554b8238c6f883fdf478d0294e55746d68dba915dceee8eaf932b357
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-activator@sha256:0b840c2a6bda2b7a99cde958e8f0e63ac856b4aeb06231d7dd8856f49811c8ca
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-activator@sha256:e60b1fb372d2cd989d6002d8c8e1def093e201d1bf012178dcfcb86a2687fa1d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-activator@sha256:38eb00ae5eca9c6e4157c129a2d0a85357acb219ad3bb2f29c1bc0a4a05a7e5b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-activator@sha256:f717de5b06662f69edfa7964685eb9b823367837407a688d88012bc9e4019e9a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-activator@sha256:9fd09971e2abcdb4132f289ce20da3c2764d993b47cdeb25305de587483f04dd
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-activator@sha256:fb79b33237f17046eb409d30cb17d6b947b5d712bac449e1801ef0f50dc6401e