Sign inSign up
Istio Ztunnel

dhi.io/ztunnel

Istio Ztunnel 1.30.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.30-debian-fips, 1.30-debian13-fips, 1.30-fips, 1.30.4-debian-fips, 1.30.4-debian13-fips, 1.30.4-fips

Index digest:

sha256:19bd72df54f0ec02ebcae8e91586222482de410bd1e3bbfd3664a229d8b10764

Manifest digest:

sha256:30238ba79da23f6c5ba8fbc47acdd4bbd4b4d0f8d844f725ad96a0ddaf2eb34d

Size

13.92 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
1
0
6

Support

Ends Aug 2026

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ztunnel:1.30-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ztunnel:1.30-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ztunnel@sha256:bf32c2be70d431871b1721f48c387395d2a84ff4557b9b5141359decb73da32e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ztunnel@sha256:52e62adaa3bb636a0999995321dbe5827c657b12f07233222da59b4a52c84b0c
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/ztunnel@sha256:15239ce5698a3f2e0d93eeca205298f62db9b1c7dc11fb6ae70baf5bb6c3baa5
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ztunnel@sha256:55f2a6b06a2f7dbeef41c2db9f8c3a854a116b9fb33774b86f5e9cf3fe3f8e72
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/ztunnel@sha256:80ce1e0b4fcae9f98a26246bbb563a57283e6c4c4ad9132b1b0c4d4b45f33d83
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ztunnel@sha256:e6afb25f8172c3891a6651dc9fa10e5ffd4796c37036cbd33a8f18ace8e9ec4c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ztunnel@sha256:65bca2a7ebabd3a9036339aaca5870305beebb2a87ff15e1861e74d1b4ba086a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ztunnel@sha256:e67acf2ae1f407012d108b39b850f102306171e5fc52bb0db702df289ecaaca5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ztunnel@sha256:bfe3f4c5b8b83825e24fb9e0ce5d6e2d3b599171e86d95f147ccde02f1aacbaf
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ztunnel@sha256:ab466230c9baba756a9c053bd3c978c4af28cdba1371cfdfb1980dc891f3bca3
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ztunnel@sha256:4850e5e524300dc9aa64d9ae6a598ec163f366841d8e990748b684ef2ce71859
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ztunnel@sha256:b03bc28f0fd43acf665647fa5ff7556309ff5eb07b936fb99734786ebb6e7080
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ztunnel@sha256:1ab7b4d0de52bdc8321e8749185884f5c9b81499074c651ba98334226fbb706c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ztunnel@sha256:5830fc0f5d6b356d5aef414ad890b59c7f290cea19dbc35bd036ef43ea464e2f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ztunnel@sha256:263abdeb1d5c4119c87da6844148ca11b79bcb18a3827eb80d4aee224d84a5a5
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ztunnel@sha256:2fc15efb20a4ab12a7b8f431e3d61fd56d8278752474e065547f7a67c10f4986
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ztunnel@sha256:8e3ac873619cad279787b917f5c13f1c2080ac962258ac9abb2e1736527401b8