Sign inSign up
Istio Ztunnel

dhi.io/ztunnel

Istio Ztunnel 1.30.x

CIS
linux/amd64
debian 13
Tags:

1.30, 1.30-debian, 1.30-debian13, 1.30.4, 1.30.4-debian, 1.30.4-debian13

Index digest:

sha256:8d1c702f34fc064393765cdea8f40255611178060565bd7860cafca1cd07f4c1

Manifest digest:

sha256:535d3eec65ecf163b82c82db01c5c1bf13cc5951aae6a7c4d5abbfa3cdb3509c

Size

9.57 MB

Last pushed

1 day ago

Vulnerabilities

0
0
1
0
6

Support

Ends Aug 2026

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ztunnel:1.30

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ztunnel:1.30 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ztunnel@sha256:28ccb6c4f7553e63871b9418911b09f94acfd2e6263e03cc3e8767878af36305
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ztunnel@sha256:f7624f80f3aad8072833a1d5a54e58aa84f562f8c0849caeaff4c8485f4cc55d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ztunnel@sha256:f71b52303d65bb3cd84382f71ef3183bb2d99a3887815e572f82d6e1be9beae6
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ztunnel@sha256:a8693527d05a64eca2068cea2208bff8bc2f8d9a9d39a082d8bfb23e22857ed3
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ztunnel@sha256:94517bb716f9dd8e5972a6782d9bdd8a684833dcb168d1a8ca0d19b237ca2525
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ztunnel@sha256:371922950f771dedadd765d6343eee52d3526f67fcea52a3273b4a46420141d7
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ztunnel@sha256:92cfbe13ffd915a4cb65e5b603a4c3da44f688d37a702af79e0793577a05f250
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ztunnel@sha256:65fef29dce968ff54b5bca016aa834fec954e2d8ca4c985086e6e1fd85677717
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ztunnel@sha256:7862d488d48a84ffebca8042849f085f120f3bda971f84bfb6b7b5af534a583f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ztunnel@sha256:a11d0314ac144a88cdf82fd58e97b9cb3dd67632b53d81115fec5ecca5a1b6eb
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ztunnel@sha256:dd95c29febbb2da1278064cc5d2071662eb3c8e2c203fa203ee2123405a92bf8
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ztunnel@sha256:02f8342e5187de86de6eb26bdb289485dcce81159d1793f8c841a881efb18d42
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ztunnel@sha256:b894ebdaf1bd6dc44f25213aa72bda511fc89bc369a0cb738ad543a34f51dd3f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ztunnel@sha256:a04d82dc9d6228428268a6692c5b958c22e0af19053e57b7685425640869a7fb
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ztunnel@sha256:d29bbbc68ecb5c74a2465b6bb64a8b063832a204944a2a676498c4d998a5d01a