Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.23.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

1-alpine-fips-dev, 1-alpine3.24-fips-dev, 1.23-alpine-fips-dev, 1.23-alpine3.24-fips-dev, 1.23.0-alpine-fips-dev, 1.23.0-alpine3.24-fips-dev

Index digest:

sha256:a938ae0650bbb08b6e392b4becac508f14d1ebfac847f83607db8f0edf1cb263

Manifest digest:

sha256:10c046ce3424ed57ecdcdc57936588a1b22923d97b1d56b4cf9a3e7e26bee710

Size

34.24 MB

Last pushed

6 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Feb 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:92bbf98dd5a5d8d9a89fe4ee9f41359db519b7ec34d9028a4e2bc52a3b2fd9c2
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:5109bc4e80dc7f5842611aaa0059059ede739cc6eb0f8773e85f0302c4b955f3
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/knative-webhook@sha256:c1f80ae4073000cd4e04a6cf1eb82256f5da70ce0c8de24547824a1edab98758
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:55640c51df995261fcb52a800ac363e7a989b26ece763279b4ae1c51c82a1c8b
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/knative-webhook@sha256:fb4d879f17f250a2ad7126a507a7c95347749e1c37197af66481a6b38624befb
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:94011b1bd0f84891a8211da982ef48d7ffb154f3d53f74adebaa00dcf2778d8c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:4643780b9251a7c0e311afc96eb958b5bc2d839d5482b32bd0ae329a7630e5ab
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:f8b687efa58ac07ad015d1fe6aa56f401d0a924032a14804030353f4ae62d03c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:47c6dbc7e39ccb7f2e8b0ced8b0a46ef49be1be9468f25a36dbd1b1daef7c8ab
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:332c26462e6dd0891caf0f8368361aab7d686d987798549f47e1e6be2b6e62ab
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:c3565d7658f76dc23fb50e8af05f790130be66c5efaf513910c97fa5c660ad31
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:bde1c6f0dada54225fbd588ef1fd5ea834f49c961fb49b2a03b30320164e7731
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:14f056f40d56afa5764d45045e06272861e54c83dc5683e2d6404e4b209e4238
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:ad6eb534f97c4c817d3400bb6bce1dea472e994cf93e7938f11dad1c3fc6dd91
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:beb5d1f00bf24222ab75c62a7655872e9ad184d2d3bace994911805a4a61e131
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:fb28aa2fa388e0b1bbb95764ff228dc579df2b31448e6bf1cf22a39cbec4dfc0