Sign inSign up
Istio Ztunnel

dhi.io/ztunnel

Istio Ztunnel 1.30.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.30-debian-dev, 1.30-debian13-dev, 1.30-dev, 1.30.4-debian-dev, 1.30.4-debian13-dev, 1.30.4-dev

Index digest:

sha256:eec86a0740be09a83beec7e3d5203fa24291b86bfee976f7bc6921bdcd6fb34a

Manifest digest:

sha256:dd26aebe9600b38a2ef67390af20d73d1668056a374b913f759fa41eed44325d

Size

27.96 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
1
2
6

Support

Ends Aug 2026

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ztunnel:1.30-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ztunnel:1.30-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ztunnel@sha256:2e0186d4ca5f0e4069d93de1117ebfa101e7dac73156e636272f03e34b4e5b3a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ztunnel@sha256:c2de3762d5c26f9f8befbb75225311ee9bb6a07a529df84d76ef7009a3a0a94b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ztunnel@sha256:a7f6b791572f05b7fd39748ff3c0ab9e87724fc4b617157ee91c66f3ca30eecf
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ztunnel@sha256:7fdabf1bfc80ffface285be4fbe71eff884b82c49d922b2675835bbf86fa89f0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ztunnel@sha256:0a7a12b0fe5165d2a40c9dafbad0c1aa2472d8bc4e1df7ee1e9ec8187d40db65
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ztunnel@sha256:370147482ec3b4a7fc54c9ab6d8ef2374ddc08076799b79ce7b76a43de082a6b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ztunnel@sha256:90db3dfbb1c31b6d3c969e8243f83b2140be28d4a1bdd33af8d2b3fb0ecc37b0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ztunnel@sha256:08ee5d4d90a819f1d6f487849df84811f4bf81f07c596b1ebb3b7f6020ffa619
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ztunnel@sha256:0630221f355f396de1bbf98766d41f38595926f0eed73adb2b6ab08faebf443d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ztunnel@sha256:1a43be56c6976f8de9ec37811f66e28792a4117fb9f78503c5682efbe501a49e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ztunnel@sha256:8c346ecacd1a4081a830d0abce672dad53fceb1133d788eb44a945133d048bf0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ztunnel@sha256:37e4dbc279ac2a3ea62653a548855cdee15d130b4a26043a2a26fad8a9490461
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ztunnel@sha256:916146526161ba473e15caea2034b436d226297b8a94eaf09c783bb569682795
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ztunnel@sha256:293b4afabcc80a01f3df7df922519f0dd68044b6d12891d275023798470ed632
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ztunnel@sha256:050aa58275608bb0a5ca3cfd2ce6e8404b799ae3987bc902d09ad9435cb90cc9