Sign inSign up
Telegraf

dhi.io/telegraf

Telegraf 1.40.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.40-debian-fips-dev, 1.40-debian13-fips-dev, 1.40-fips-dev, 1.40.1-debian-fips-dev, 1.40.1-debian13-fips-dev, 1.40.1-fips-dev

Index digest:

sha256:69d36eb1132d4e834a0186d3f909c719d0f882ab754fd7e2e3d99d4b2c2a82b8

Manifest digest:

sha256:9ba2664764d61f339940fb68535ad8c747a213ea4952e86dab29521ab73da36c

Size

174.05 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/telegraf:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/telegraf:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/telegraf@sha256:b230036431d974675e9b88e44f7086af54e34ee0d87217be250fde645b3ee569
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/telegraf@sha256:45ed62b21c20fbc85967eeb2a48470933dddb0dfaab93c966fb49e1548583b4e
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/telegraf@sha256:63bc84a50bc270044cfb5c95075eee2a972eb8f581fd1b14a71bb19e5735557a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/telegraf@sha256:a2d98f82b932ab6833beb8862ad1a4a5e21dcca1a71b0cf5e7ca750775b6e2ef
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/telegraf@sha256:1e194fc5d457f1f925cc029ac482a2825c6df429cf7f9b553fb993dafe8a7a7f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/telegraf@sha256:c28ff1e40da67b16825f06ef4b4a616139c9dc27e49799eb320d1c82014f2347
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/telegraf@sha256:880cb8d8ba58fad2a8ddd60c91d831704c20526e4cbe534a582a9957e414c453
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/telegraf@sha256:986460fe7cea5bf8efc7cf58b69219331e05c7c1b8427cb3747fcfbd1d1bbf7a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/telegraf@sha256:3ea8bb65d03545ecc2c8246fa7001cb81ff4de3c708f8a130813c65ba032c5fc
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/telegraf@sha256:0e62bd8e395a7cfef7482f1bb9d7f16f0238c847049799fa36da3e3073088fc4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/telegraf@sha256:79381b3d68147eb565c7f01bf785a02e79f0b3c91546e38408e98c485bdd7b5d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/telegraf@sha256:1552a60592b91257f5a21724e89b63b86d8068b5a9ffbc53b9401b5443927ee9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/telegraf@sha256:325dea5d018757e87524a5be265c72a9fa25e06a0427bc06c1cfcc5cb8ca278c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/telegraf@sha256:130a05896649aa3a9e4269c1375022a88431ac308137245b1a9e01ef82d58656
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/telegraf@sha256:bf5a6f8408fafda96c6cdd1eefd5710c7e232756290550c04d680e837e8aef1b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/telegraf@sha256:67cdbc074e4816e01b83ed0f8d0bcc234b6fae8e4b21851b8742999df9dae2a5
SPDX SBOMhttps://spdx.dev/Documentdhi.io/telegraf@sha256:5a6e31ccd4b382129c5dc5bb659a7b541601de09f19689cb7c0428350a143f31