Sign inSign up
Kyverno

dhi.io/kyverno

Kyverno 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.16-debian-fips-dev, 1.16-debian13-fips-dev, 1.16-fips-dev, 1.16.4-debian-fips-dev, 1.16.4-debian13-fips-dev, 1.16.4-fips-dev

Index digest:

sha256:6737282cd761842cd2778fb6e89e73dfa77297e84ab8e3ebb9d0980eb72558d9

Manifest digest:

sha256:065d95e8d96ab1acc6078c0134252be8af9bc2502da4e8257420708a0de1e17f

Size

90.63 MB

Last pushed

10 hours ago

Vulnerabilities

2
12
0
1
4

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kyverno:1.16-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kyverno:1.16-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kyverno@sha256:24058e724500ba934647b7f8f2bc33fd01dc9f2e65a24d05400ee988b95a6131
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kyverno@sha256:b7b0867bebc7d28593cf764f2ccfdf147ad96088f397d9f684986179c4a5079b
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kyverno@sha256:ad870c6db903c1b7160288bc23ec7e651b5e976fb9960c397bc6b3e455f592aa
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kyverno@sha256:3c8ae24005e30721d966bf9d4f8d78b7fecb3f709d1be71a677fd73948799868
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kyverno@sha256:6e0c41abb67f33f85933907ceee2b848f55c0c7672fe2f9fd91667b08599f9d7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kyverno@sha256:d94af1f3dd77f7863dea78e5ae0f3dce461f83d14e40eb787f7a246813bdb966
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kyverno@sha256:b26336c60faf3687b584ce7796bd370ac2d1e8509d1b2866be078f40286880fe
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kyverno@sha256:6a4db4a06ef9070abaed6e4d7412d75d5b0a0c553478d11eb0dba49536275271
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kyverno@sha256:c9a64ffc22ba31ba7f1b7ec00ea02ee32dd99bfdf2f1c5c0f703578a775bb62b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kyverno@sha256:738e7318c1f35d5ddee477c00daddb7d86f363ab7e0a815cd72e48ab99225a97
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kyverno@sha256:c90b602ea77b4d5dd8986edd7a84568645c9e9de8e50a2a8e4d2e0aca7f4efe3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kyverno@sha256:33345de5651cf307c4664e1e87d9e3d341b4c580a2892b6745d3f0d29bcc97e4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kyverno@sha256:24260a453135b5892a98cc8829115fa105a919dfaa6b6671097659ad643143b0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kyverno@sha256:58bdd5adaeb5f9ccd4ada58ff64863cb964f613d789185ee14a6a015057e0196
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kyverno@sha256:be062ed50c59ca7a51fb2671ae90f51a8b4ef1592bf33acb2bbac8390b83677a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kyverno@sha256:56a94f79e027067d71503bc8e42163af1047ed606de97811af9d5bc946f25ba4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kyverno@sha256:5963e67cf3d5a880232f472b81f2eb58860e3877ffa39c03caf03d2d895f983d