Sign inSign up
MetalLB Speaker

dhi.io/metallb-speaker

MetalLB Speaker 0.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

0-debian-fips, 0-debian13-fips, 0-fips, 0.16-debian-fips, 0.16-debian13-fips, 0.16-fips, 0.16.1-debian-fips, 0.16.1-debian13-fips, 0.16.1-fips

Index digest:

sha256:76813a744d09d0b1fd35a08d51f3f9771ad8c20d1c119050419d3b598d1f651d

Manifest digest:

sha256:513648e443fcf877598d799cbaacbdb2a990f342506188d552cfedd4ddfe6976

Size

40.35 MB

Last pushed

18 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/metallb-speaker:0-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/metallb-speaker:0-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/metallb-speaker@sha256:125ec8679e36afa73b6e528fb4ba74a0bdb0833eb52e8e2cfd7dc9c5d77dd36c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/metallb-speaker@sha256:a5968ecd418a58d37429eed2ab4020cbe59398987ec4cb7d0f4f3e0248ede672
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/metallb-speaker@sha256:239f3f0df9fc478e3811126b47aee56b25ef98c841b6e9ff8cbeca2f3fdc8b11
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/metallb-speaker@sha256:634355ebc5b3df04452cfb7afdfe948a24c811152110cdc2e56b481c7c7a0066
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/metallb-speaker@sha256:1843ad6782f4895b2ea593e074826ed1dbf43145097c41c79838f714eef08b19
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/metallb-speaker@sha256:d41ba0e87634c872707ac67ea3c8f1284a926f02365b1eb4fb11b757b0627a5b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/metallb-speaker@sha256:3af09b4f6e4951aca5e4c42cd9f460bc0fdc1e7677c0d9cb0076bde9cc9bd094
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/metallb-speaker@sha256:983d2bcc72649ec72a722fca0bee7750d4c38393b1da1b91381762aa32c81d83
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/metallb-speaker@sha256:cdca6449e950f5d3732a6952a8bd7c74c65db96484deeb6d6ae20e2b85aa732c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/metallb-speaker@sha256:832d091e5250510b33d5a69c8cd6f349af6645d411422284466bfdc7aa2a16d0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/metallb-speaker@sha256:ac67a4ba6b4eb101e0b0354355d7be6691a6d4ca7421725af6a1b3ae67b3ccf7
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/metallb-speaker@sha256:1eab724796757eff4cedafa863cd948e044d8b936831c31cda4bb71d1e56f618
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/metallb-speaker@sha256:6523c33b2c9fb792c1ba36f2e90faafc52ca86d7c521d6a64d8947ae1184ac0e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/metallb-speaker@sha256:96f61c0540386fd0fa5c000d77c1526f246c58bbc9b608e669aef50446bf5145
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/metallb-speaker@sha256:c02243bcb95e47cc949aea3a5494e002f279bf6a2d380d6489f48da11d28c780
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/metallb-speaker@sha256:c0f3aa4cac119e6dce629c032c1e21ca91cfb0ae741a94eea18cfbfda9d80fa1
SPDX SBOMhttps://spdx.dev/Documentdhi.io/metallb-speaker@sha256:f72572f936fe29f4b2edb1187b71a4086bc3fdbb4253d02d39bd94ca62508750