dhi.io/kyverno
1.18-debian-fips, 1.18-debian13-fips, 1.18-fips, 1.18.2-debian-fips, 1.18.2-debian13-fips, 1.18.2-fips
sha256:71bce7b1b89f4f0c2267d0dc01c5786bdf4d1d3df86798d1c73b10b2bc06a6d9
Manifest digest:sha256:cbac38d2ab226ed861773500304a3e254f3ea0cbd3f001fcf30e8971f1357cca
Size
42.55 MB
Last pushed
5 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/kyverno:1.18-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/kyverno:1.18-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/kyverno@sha256:e45190a2e8a7eea96db2f58d6f43b8c100ce848b3ce799bc47da7e69783f694b |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/kyverno@sha256:44afe7ebf0071deb3dad735bfaaf171d644decddcb8eca554b2702a8441270b6 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/kyverno@sha256:6997c29a431acad58fac7a35833c9a9a38fb55a43bc96c5ae620e90a854b77a6 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/kyverno@sha256:23fcded43e5df7bab9a44273a6d30c6e1063512386c12df017bbdaa7b276d2b6 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/kyverno@sha256:d66c6d0ae1ddc2d953ab43cec3d2387cb78302689447ac59bc9dd8f5427c065a |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/kyverno@sha256:9ae811d4102bae74fd2baad55269d8d164e858e9dd8bba24680d2cb640054c4f |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/kyverno@sha256:9d742a3d281e364109aa53775c84549d22d6cbfbe3c32894d36271a15c808c36 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/kyverno@sha256:1d2abdabb5b288b0451e232967db9c0bf861eafa9b46df4af0bc085af0d1fa36 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/kyverno@sha256:80a009a05365a667a1d8642de28656bc97ffc003c9fbf4b53a203fbbf30587a7 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/kyverno@sha256:8e919ab4556c692f82bfc238d05a26e46a86c07f1d75e5db34ef48549f66666e |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/kyverno@sha256:6e4d5b8c98af8df395162223db45b1543f30b9c7fc2479893e8fc44d932606aa |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/kyverno@sha256:3786134a2b4cd41c47013c3cfee14030575e31c639b061b01bb3e60a3b868296 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/kyverno@sha256:a9b64261fc0eca41024e0d1f03ba912f3a1fc7be6b01cfbcc20c19e0502efc1a |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/kyverno@sha256:eac6cef1dd43874181c21624a08dfc3ae5e6c108202079be8222fa0d2da92e35 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/kyverno@sha256:ba1ea56897244a2ed5a9e801372a0b278c100e58cc03cf8f9ca202c6150b0d23 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/kyverno@sha256:0d876a9a79b63a8e360e05faccf33347e308fa4ff18d4cc763878b1c5e0e6de1 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/kyverno@sha256:4f045ea3515a6865c3abedae0f067580d7e1b6b8718a0c8895554f24ffc153ef |