Sign inSign up
Kyverno

dhi.io/kyverno

Kyverno 1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.17-debian-fips, 1.17-debian13-fips, 1.17-fips, 1.17.2-debian-fips, 1.17.2-debian13-fips, 1.17.2-fips

Index digest:

sha256:1ee89173ab6fdc948e916394119598fbb3d29ead2d0caa1704d290871287fdf4

Manifest digest:

sha256:00d32dfee77251ab09deab020eb300a3efd954318933724079c87337f8adf0c2

Size

42.30 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kyverno:1.17-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kyverno:1.17-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kyverno@sha256:4f03e0ba22a37f4daa44428b6fea629da77abe2edbebd789834cb7c35d658ebb
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kyverno@sha256:5a8e847e059bb0c78269ac59040273f5790da91e1132a5da8586a176d6e2583c
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kyverno@sha256:0bccd4770597df0ad257c6aa3c5aa382c4e69b5e309c0e2c5c65d535da6bc9d2
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kyverno@sha256:2eda50764661be5287e016e70bf410878181d63fdd78ffaf33d2833c4f65588b
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kyverno@sha256:e0fa84c21826a5e712f5ea4813a0cf9eced1ce2194108e57bf53dd7b5c90037e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kyverno@sha256:98957d5cf584f4783f12c0e548f11eab955842804bfecb7db946141b92972721
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kyverno@sha256:57682f0d00299b34d582167659f046fc427c04a98247ff89c3176d554fa6df8f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kyverno@sha256:073c1c7b6d8309367297ce06b87fc06974ff5e07682f1481216308c842e56601
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kyverno@sha256:246f0656e352cd49c7664f33ff97d532227062ff5e6a463917cc0b30b8726bb8
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kyverno@sha256:7cb0755cd494134ba2153b50b800812d81215067986787ee012c6287b0382ca5
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kyverno@sha256:57d1c93bdcd51c372930e668f23f107c4e66f6c1a120a38335abb29e0057af36
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kyverno@sha256:1c45fde5cacdc06cbb5b6b37f9739df085f86f5c1a39f25138343a40283bc3fc
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kyverno@sha256:1fbe1b522d51c6f219dc0ff04ac79eed00a3ac01eb63caad96bf05672c0557a2
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kyverno@sha256:003065c0bce01de979436f84b12a9d3197898cc184eefa80d06eee86711bf162
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kyverno@sha256:07bc6a823a8576d82fc5a0682fee353e1b58f941ede9f0516b1a624af74e8094
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kyverno@sha256:7a092ecc0ddc23fe81a3adc057e60c253ec5629477198f4c2b230cd41ea511ce
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kyverno@sha256:2112bce3a4a9daa4e43fe37be84a071e4491b9910463ae57e9fffc11f59600d7