Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.23.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

1-alpine-fips-dev, 1-alpine3.24-fips-dev, 1.23-alpine-fips-dev, 1.23-alpine3.24-fips-dev, 1.23.0-alpine-fips-dev, 1.23.0-alpine3.24-fips-dev

Index digest:

sha256:09415d2b907d6d929b41dfc82bc15a2a01372579243b7576a0867d148bdd4e59

Manifest digest:

sha256:1e02c824ce6638db1e77c0b1b9359e7d94d958b85a3306badb41c680f84e1dd6

Size

34.24 MB

Last pushed

12 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Feb 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:dfb1a7cc7b1c8d000419e9deb9273d59b136d6a6eb2e3e5a3055751775d62747
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:c8dd7422a6627fdfd7d4fdd7755e19c01eedfa785de8b44acb347b3f133b2361
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/knative-webhook@sha256:e28995f54277ad3825215bd0cf9440cf02755b54fc4a3e00323025878173e47d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:81c90637bd414d85d584f0e9aa4d25c3a397f15c8ed4f76ab952f65ca72f8944
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/knative-webhook@sha256:5b1b3e03ea9b8beff90de0f6abd0b8ef59084d0c1a1ee8eab390ee7390da7f67
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:2b219030fe83b63bacfcf91363169355bfbed62116a127dba4ad99787a51053c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:07b7a5a84882a0490e7ddf0f54a0d5b9606b71b768c03835a4dfb4cb18bfac70
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:fe4c500de1e6793b9e561eaea1865140fe17b8c2ec5219ed4d7ba807e687b77a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:7928a3dee70d7eb40863979053ee33014f94bf324b8ccdfb547bb59c155c13f5
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:87e6344f0061db10b4c993134c4597aa308403ff6ef74398e3de03f41b8c72c8
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:b98a3ec28dd298296bf5f6ec516adefa4110a3a77d9800c6610767e12eb2d83b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:4eb078420c96830e378b2a198d040d6f6761d2f2313f853c40caf10765b30492
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:be074d3713244b382dfdba8584b83b9e99aac6e8477c6117e8a4b02271514eb6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:75db03cecdeaafdaef458240c9076f09d77eeaec8d36a259e66a9adc579b9e2e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:cb69ca16b1d931a9a133ee90db343fa2aed8e36aa1696831e27b89f3da40ca57
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:e1e193a6ec8de198b39138049b73cf53d0ac9a24d8804d0f3313d077ced9e6dc