Sign inSign up
Istio Ztunnel

dhi.io/ztunnel

Istio Ztunnel 1.30.x

CIS
linux/amd64
debian 13
Tags:

1.30, 1.30-debian, 1.30-debian13, 1.30.4, 1.30.4-debian, 1.30.4-debian13

Index digest:

sha256:1722528ed25fb5c8a31e927c40e5ed7991b09d990f6a1acfe78dd632fd584971

Manifest digest:

sha256:00988fd86292f108776122dd63d5f4ae61c55d252dc4fd523211581ef02aaa15

Size

9.57 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
1
0
6

Support

Ends Aug 2026

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ztunnel:1.30

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ztunnel:1.30 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ztunnel@sha256:1e4c3ca24fa18f45a971812dc976f1daa803235e0079cca53cb92dca5433bd45
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ztunnel@sha256:63dba8e2dda88e2e8f0aaf0f00df550199ea390b95a0b466679fa04f81d91d98
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ztunnel@sha256:13e69244bc1c773caec318b4c07ca461ca767cf6773f72cdfc63aac184645d33
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ztunnel@sha256:04d0ddeddfd1521da7734aacf7a63094f3c76fc38db43b17d4e70bc2a93c81e6
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ztunnel@sha256:7e8a73bd15d4a85e136ae1e9a2c9f5adb9c213b46c375081cc5a6ef5edf206f0
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ztunnel@sha256:8699ca49605fea7a6b4e512eec7c7102178e5f436bddd6d6862148774ffe24fe
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ztunnel@sha256:b9d970ccd80a24124c8e3e06808a386ce3242a63df5d90f2bb794777500a0aaf
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ztunnel@sha256:4daadd9585261db235ccb998c701df5fe1eb3b59d9afde28a8e99b4359718cbc
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ztunnel@sha256:12b5a791bfc038de3934a3f6d7e7ceeb51de7d33604b8d7fe5beead033bf401e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ztunnel@sha256:e2487b8d534e08bbfdb01cd044efbc7e753852b773beb858dc7451a926c8ce08
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ztunnel@sha256:2db0f8654a9fa5e36b6e5b851187f698c5b38542ea41a04d81606c6a03b89e26
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ztunnel@sha256:45014a625f6ef7a5ae687074fab29981417eb09be5752eec14423386ee8116c8
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ztunnel@sha256:2fcfdf3aedb75b8e8f952b75d31dddaeec41bea2069b67b40b020d672cd806a3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ztunnel@sha256:7bd145ee222d6bbee80e38564c2ca2573fb1e6805218eba1d5560bb5093cd261
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ztunnel@sha256:6ebc7fbcac896f67df3fe06dd671b2f85af3c9758818a563893cc3368ca8a3ec