Sign inSign up
Grafana Loki

dhi.io/loki

Loki 3.7.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips, 3-debian13-fips, 3-fips, 3.7-debian-fips, 3.7-debian13-fips, 3.7-fips, 3.7.8-debian-fips, 3.7.8-debian13-fips, 3.7.8-fips

Index digest:

sha256:ff0d9a8498ea7c01300f6b0c72c5d6bf9339548c3604ef200c31696b49b8d316

Manifest digest:

sha256:3b6dfa2dda6c40653ee28efa5df00126cc200fb33b320fc911fa105a5a260675

Size

49.64 MB

Last pushed

3 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/loki:3-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/loki:3-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/loki@sha256:319fc2b2607922a42180137a45ada74cb782f5d4055e34b64cf4c90e429a620c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/loki@sha256:7c3117e448cb2999b9ea41f3b020eeeaa437f55f0f68207954f929e674639c47
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/loki@sha256:bffd56fe3c6955cc3f4aa0ff8ab75841b90f778dc27e882626babd0caa26b855
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/loki@sha256:2550397aab7119c5739ab9d68a233fe4306f2d159218fa6928a9b2e20546fa64
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/loki@sha256:6845235dd8ae294e819af6a34dbca5f6c87facba4b15a8f418b298f3824deb50
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/loki@sha256:96e35c2f02e915944b436f8d05c6071d39da7b93649da3f6023837386454f9b2
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/loki@sha256:a06083e8c299878bbe516c61809e269bb113b179809cc43bb6d1056be9a0dfce
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/loki@sha256:4039293fba8f3f2e8e8b78731ed77cb967b9442faed4f94d379c24f58aad301b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/loki@sha256:f158b25372544f578a3a5b82d809d004e927fc587b2962d1ca50d335943f41cd
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/loki@sha256:02c747675f21c2e82324b9f8c7e52074f2316973583644d3db429e283e85210d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/loki@sha256:f5ab1174691ed6c72bee1fcaa4ed5032274247a1b2a93050db108b679b21fe0c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/loki@sha256:3edbc19b15dd61beeff5df1fd2be8f883b5b8eb8571dee2c34dfce809ace862f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/loki@sha256:6626ded49093dcdf7054a12a39edfcd6090b53872d08f11935f75ad936fb969b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/loki@sha256:643b9c4df3d61e611a0f55271d180cf068a3bb146ac6333ae5e894668eea0487
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/loki@sha256:11ee0298aac4978a80146ddf6c6d47ff65b6ea31f33e576e46c0049d90d4fc3c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/loki@sha256:79fb25d10ceead61a47076dad08218e983bd45617f099e5343ad8a5691a4e50e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/loki@sha256:29bdf5151404c76f6074b1cfc682d1546b11c74d1b1593218159d182e873a700