Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.23.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.23-debian-fips, 1.23-debian13-fips, 1.23-fips, 1.23.0-debian-fips, 1.23.0-debian13-fips, 1.23.0-fips

Index digest:

sha256:7cda56808fce739a651f1865ac0be9978574c8b5a63b61d5702d31bcf2203289

Manifest digest:

sha256:62a64a55d4a016a245819b5b310bd4d4c4483228104ea4a5251ba55a4cb5ba85

Size

23.04 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Feb 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:ca21322c40240554d9d82b252c764c02c1752ce9473c17e6452a9f572f9946bb
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:b14d3ab37025fe4319bfca7e2ae87d4f7a55519f05712ae5ac0f89cf1993a8d6
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/knative-webhook@sha256:4f8f3ddcb3dfba85863569a048c0ee1d26e834955a334971f607adaca62bf0ba
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:853410af53b950e3ab0a4f781ac4049b5c537cf200c7ee6160657357fdeb7bf2
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/knative-webhook@sha256:9eea6b62dd83b7fe30689dc2bf983a4fe440b0fac0c4f251604344f3e47bb6bf
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:b94790710414a36796150a74856c6575ec63e55fbfd1094bb33db40ca7b410ac
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/knative-webhook@sha256:f5e4ba262b3a02745e179b56937e0b1401d4fdce9e2bbbd703c1c48a4fe17b96
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:ff9fdf06568bb925674b279fb6e703b754be4f5617b6d650eb87ba2f7c62e9e4
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:8eab6a4b2d0cd6460456662e174f7389ec810df2145b869f6606fe67ef0e9045
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:39c13fdfae46355952cef465648ba88b68bf2c0c7d17a151459aa095fddf3593
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:717839f0faa58fb4afeb73370bd7409c67a78f98dc32544a18fa7f3682bafe24
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:6bef966ffb9f0fc7d72b272ef1f6f81686463d7449180de13906686dfe6c566f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:247634267120e7932e142ce5a77bd19effdeaa35709f39aaee17c182572b4c19
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:ee6774d2682082ca0a2c6012a372552d326067d3b876d2c4707fe4101d4f4db6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:cc54e07887ca700ba756b5b37554e1d9ac06d0c9c82dddd6881d8694c4b62b66
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:7de9ae27d9115bc409e64fc0f56838a49ee3465785e106371ef3c98efe27d981
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:d1398839d155433aebe901670dda1b7a11186fc6236e2449aa776532bf218711