Sign inSign up
Istio Ztunnel

dhi.io/ztunnel

Istio Ztunnel 1.30.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.30-debian-dev, 1.30-debian13-dev, 1.30-dev, 1.30.4-debian-dev, 1.30.4-debian13-dev, 1.30.4-dev

Index digest:

sha256:55b072737540e28d7b151a2b9559f55b9dcfe9b71697fd648a097ca89a64474d

Manifest digest:

sha256:99d917a075af6024947d7f5ac688db7d52fd6456b06d8aae12ee372687b38d84

Size

27.96 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
1
2
6

Support

Ends Aug 2026

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ztunnel:1.30-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ztunnel:1.30-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ztunnel@sha256:0f89e6f6c8d78f1fe3cada24ed5bb97b8455517fcd6238e134e49e8cd8db729c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ztunnel@sha256:eb29691ae8d72e1562445e71452ef84798e39026a36a4ea809a61fef4252aadb
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ztunnel@sha256:7822c65849507ccac686b8c5601d745d68be1ec204e335b0057fa2e9cae1d553
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ztunnel@sha256:68bd68f95995597e4e17330368294ca6c7f5c335c526ead4b3e2c8524083d9a0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ztunnel@sha256:2a2bf4e1862afe426130082c112d7518a2d19f82b23d27e00cc47408dc9f61ff
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ztunnel@sha256:d6f4e989323e430a07671513766fe66f602719fc9f8ad60579211eb414b1a324
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ztunnel@sha256:f1fb95c660aa7a3ce148675bc3fa31def3797f85b0fb74dc800f4708d16ed936
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ztunnel@sha256:8dba1ca55584e0eb70ca76522739c8ddddf3f1d85f474d3d2fbc75826feadf85
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ztunnel@sha256:57d711abe83e82b6939d1ff70a6b02ed4d7caee1c918109703ec357fa831c46a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ztunnel@sha256:34b1edef031621e5a78f1e2a23491c40708abf7a96df900ec6ddbe1199f5ca96
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ztunnel@sha256:1e2aae21d6f4e216a63c378ce37dd4b382667110ae328d04f8a4b977393f686a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ztunnel@sha256:619591f9ebc1a47629c031f8a65fc33dd172353ea18d7274fed718eeb308ce7b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ztunnel@sha256:be47fc2504e54d1a8cc83e8151c9996df8109e7d085c6bf35e2fecd7223c8fb9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ztunnel@sha256:57c011db4457571b03a7e1fb273df4750e44f033cf633194d7f8bb307370bad6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ztunnel@sha256:9dedf7b6bf1d8709a2d824df96a5f451fc6b03be981997490dfc655cce147cc5