Sign inSign up
Logstash

dhi.io/logstash

Logstash 8.19.x

CIS
linux/amd64
debian 13
Tags:

8, 8-debian, 8-debian13, 8.19, 8.19-debian, 8.19-debian13, 8.19.22, 8.19.22-debian, 8.19.22-debian13

Index digest:

sha256:53f87fa794a35047295d6e82f603cb2753b8f15b0a4cc94b9982a4db8cbb1f6b

Manifest digest:

sha256:931748e09ecf0d850c0ce7f9efe7dfc45d906444dc4eb59bdb1b1e911babf1d3

Size

415.56 MB

Last pushed

18 hours ago

Vulnerabilities

0
4
0
0
0

Support

Active until Jul 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/logstash:8

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/logstash:8 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/logstash@sha256:e9fa3407d2c0347f01a18f86815b6bd13d8ce8ac482ffd30368d67e97812454c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/logstash@sha256:81dfe3cf7d4d6cd0ae8c6a07683ad84962e7b7f547b6090eb129f6bcd86e9667
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/logstash@sha256:4dc66aef85b6947fd0b851a4fddffecb278af1e9f8ae065b862300c076062fe5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/logstash@sha256:4e9787ac608272d393b1c1e97fda802e18d08635a14e307423185500171b6cb7
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/logstash@sha256:72e6941104a9c9e3212057de6efdc130a8eed904245804e43b6372c28d7d6fea
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/logstash@sha256:a08fb0feea7d1ef32d65823b7768d85c15448f858480ba69f20a471275eef152
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/logstash@sha256:443493c0b9368ab8b5a6f0a876fe9f443bca0821ee7580e147a24c0387d75f01
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/logstash@sha256:7e30712fe67adb5a7ebc51c6b12780c68bf9823877c2c2a6c0ef61073a9d3258
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/logstash@sha256:c970934de55b66e014d11ae2e4265c3e3c296f327fba48d554c831f417b40a55
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/logstash@sha256:5cf1fd4371c858e50be0b2055fca21074506fc9fb6e4622727e4aeee6f9c8a94
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/logstash@sha256:9f22a6625b5546a3448b680301c99fe204a8ffee07c1b3d1005b8854712fb23f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/logstash@sha256:4da196fdd49105fb05ef5011050d9eb0aa50ecf82fc11494af010d29270cb468
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/logstash@sha256:8aa70a4323c973b767ea29fe12a754c06a2d3b910ebbe50ad3b19b5f51f45105
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/logstash@sha256:bfde979eeb7c3c8ec314037d3b6aa48b5c31f6d52859b434dba24e17379bf623
SPDX SBOMhttps://spdx.dev/Documentdhi.io/logstash@sha256:d75ae2c3930987be74035f9d9d7298616ff9870593587f14c15c2fa351908d05