Sign inSign up
Kyverno

dhi.io/kyverno

Kyverno 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.17-debian-dev, 1.17-debian13-dev, 1.17-dev, 1.17.2-debian-dev, 1.17.2-debian13-dev, 1.17.2-dev

Index digest:

sha256:a8f05d585cc9982ef50011f701fad3cec299522aefd754f5f2d034a8313fcfe8

Manifest digest:

sha256:c3232818162f027ee3a8b3a0a4afbb83deea768d43d091be9ccbdb88a97f57d7

Size

90.27 MB

Last pushed

3 days ago

Vulnerabilities

0
0
0
1
14

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kyverno:1.17-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kyverno:1.17-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kyverno@sha256:6d99b1d521d248413c80a5403972ac26d4124ca19405529c9eb9ff3773604a37
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kyverno@sha256:b3a59c928b410733aed466847e6e2bf6d4567393081153dfd87e8f75c6b6b7c5
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kyverno@sha256:67d9f4072149804c1fe731d79cae78afbe27518f796dfa15c921b4d8917c3413
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kyverno@sha256:7bfe848c51d793ccdf8f78d3571794941843986f5f224646a14e505762fb60e7
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kyverno@sha256:41a0947c572ffefa0ffcf1e73aa6009843948b64020c16a03e489d380fb4e829
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kyverno@sha256:499ff35616d65fd796a7ad908d98be054a9b54c55632763a578d64744322b40d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kyverno@sha256:fcc391ae63a5ce1f09a3eea2c840466b2250ecc99cf7c6ca986723401057ffd4
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kyverno@sha256:e1c4e29eeadfd88be2366459e6fe2772470ba0db1d3cbec311969c853c389ebb
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kyverno@sha256:636f13546f09f99d9bb4363b47c03c918d4ea8536cbdf8c04eca42ec71fe03e6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kyverno@sha256:57dec37f65138674d0102b67584f201d4ace435c764874ce9246be18cb5fb8e4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kyverno@sha256:bb19210081e573d8c018267c0ef5c39823b027f5ef707e5ea77c2ed0b11f6fc6
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kyverno@sha256:d46392c10191741737075e45814e3400783eef030fc1791b11aebbc53920ea21
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kyverno@sha256:aa1c78cbbb1576fcc0fffe65b3cfc83133b3f39782445cd5e36260eb019d30cd
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kyverno@sha256:0c89a2bde9b3d5f485f0ca03576d862ab0acbdccb3c79bc2890df46793894464
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kyverno@sha256:fc12332b65b37c76a39b618c6d5d0a90ecfb3fa27c8afccc5058b4d9c9388dc1