Sign inSign up
Kyverno

dhi.io/kyverno

Kyverno 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.19-debian-fips-dev, 1.19-debian13-fips-dev, 1.19-fips-dev, 1.19.1-debian-fips-dev, 1.19.1-debian13-fips-dev, 1.19.1-fips-dev

Index digest:

sha256:5ca45bb69517717c89ea7b7c58a9b02e95e1a2abf48fe1392a5560d2a1b33234

Manifest digest:

sha256:b988bd8fa6f62135f7b09bb2983d6ddf8cec96177294652859e048d6a69dfae0

Size

91.98 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
3
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kyverno:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kyverno:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kyverno@sha256:931e8755d7753bd99e7c8fde85232fefed46c392040d33506b7b93c8e8f6764e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kyverno@sha256:f6eee37a86b5d89ee8a2b04705c88eb04660403e65af118ab1093d596c00cb64
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kyverno@sha256:f9bcb2ccb131d1043dbdbba7483f6624e9f8da8566305aa469d5434632e0bfc1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kyverno@sha256:66e7c594be170ba8e49f672426b7969107e3924e035682aec05a3f732cc69bd5
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kyverno@sha256:1eceadcc4a708ca100ce0b7df2966d987f3bde47fbd3adc7a14d99ad855f6798
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kyverno@sha256:5f4e9cc6e89742d0e5e58fc34b4838fff99440b35ada0e08168ee21eb201a6ab
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kyverno@sha256:b2eec599652ed6d2df67b70f5586f592dc994dd6014ca6d12e70435623b3ba84
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kyverno@sha256:2fc4015d002b537fa04beb9512ce976c97db1e686b0164c2a5567ae196e32cf4
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kyverno@sha256:8d4ada21f609e1505ba6cb0c20a387008b0bc83bea7f277e1bc070e18d73eac4
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kyverno@sha256:092265c1097adf9e491a6c845564a4db16e6985c36c4280f9e9beff297e9a5b0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kyverno@sha256:1fe9d48c2bdfcaa385fb7661520a8642b4f6262c8f0d3dcac872d891d895316f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kyverno@sha256:9e5a6c9c69e64cd755b6dcac68d543ad5f25e0d9fc9144efe7b6794e26f14763
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kyverno@sha256:d85c3362612ff03fdee060ffb03e259ef2beefa04ac5f76df4a7214848b4302f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kyverno@sha256:a903d5bfb0d5cba67c4d91243c6fd72d76c7f943b6aaf34b62eec21f148972f9
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kyverno@sha256:8858e493ec1b8f356aae8bf252f042f7bfa7e94eb76858ed4c63fb0285eba81b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kyverno@sha256:e2461e679c8551324b721d817e30e0584d3cc42a523d8130726bd102ae9c5058
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kyverno@sha256:c4859fb0250c31942e422bb73375fcf23b4ac069e77d3211da6602b25b067ad6