Sign inSign up
OpenTelemetry Collector

dhi.io/opentelemetry-collector

opentelemetry-collector 0.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

0-debian-fips-dev, 0-debian13-fips-dev, 0-fips-dev, 0.162-debian-fips-dev, 0.162-debian13-fips-dev, 0.162-fips-dev, 0.162.0-debian-fips-dev, 0.162.0-debian13-fips-dev, 0.162.0-fips-dev

Index digest:

sha256:534391c953d4fb274e4a7d2baeecdc220983ecd4685ecce7a53dd786926c09a9

Manifest digest:

sha256:c01698db0078dcc5a2846e8cc657e102489dd2a50dc0fb71b0af1c54b1676397

Size

86.57 MB

Last pushed

18 hours ago

Vulnerabilities

0
0
0
1
13

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/opentelemetry-collector:0-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/opentelemetry-collector:0-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/opentelemetry-collector@sha256:9bf395fe14848e068fe1526d01fa61f5a40529efa3f6365a1b530a7abdf8bde7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/opentelemetry-collector@sha256:fcb80cf66ee8db9782d053c365893ee59f6fc8a43b4a746c3bc8c88f127ce6c4
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/opentelemetry-collector@sha256:db90983083916b3892cd2af023bd4683a14dcc157cafb627a4ff0f9654f778f9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/opentelemetry-collector@sha256:dcb9e5a72f487958bee10483ca6503a1c4b904dd7f5783d837d7a55ac774e2b8
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/opentelemetry-collector@sha256:7982636cb12d30c4b83b1fd54669fdc8e6309f2c709d0ff89f6e71ce1b67fe09
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/opentelemetry-collector@sha256:9bd53df59f622c5099f39f067743bdb7b135ac74ee57b873b102538e7e8d588f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/opentelemetry-collector@sha256:bd125e82ff55015c9ed5cb92e75af3bde36f2adbc902fcbd1fbab2eb5a5bc992
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/opentelemetry-collector@sha256:a1ce594d18e9a1dd3989a0bbb868f6233808e8a917548c8a028e10e581a8dffe
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/opentelemetry-collector@sha256:059855e994429bdf3231816d33e5397372cd90cd6a53315bac6ae18f51e797e3
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/opentelemetry-collector@sha256:d9159b11ea1b91597ecd5b62ac7751c756e8baf3f2aaa4d47f74cd3426921d79
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/opentelemetry-collector@sha256:710acd4399610188be3b31d5241933811f2a378d5209deb6b7a249c4d5f562da
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/opentelemetry-collector@sha256:cc9eb9befff91bc6d467f891ac271c573e45c4b7a025c920734dee89ccc2a6d9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/opentelemetry-collector@sha256:110e097cbde09e7f71a6aff53a68f5dd0a038549fb49fd0eb1f622412665c8eb
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/opentelemetry-collector@sha256:477c76c252ad9da4729d1fcca77f2990d4b69b4227e60a6c2a25f3b7bd045ddd
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/opentelemetry-collector@sha256:4f9f48ab2b91a9eae8a4495c07ebba94126abfb2e74103504a0f8d824efbfb21
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/opentelemetry-collector@sha256:af09fe30d07ab79225bc3e8bbb9c788fb0bc9663bf3ab8512ba94a8cdbb4c072
SPDX SBOMhttps://spdx.dev/Documentdhi.io/opentelemetry-collector@sha256:11878578add6236ffb4906547996bafec721416881d1a06838b0b141abfe8f8c