Sign inSign up
Istio Ztunnel

dhi.io/ztunnel

Istio Ztunnel 1.31.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.31-debian-dev, 1.31-debian13-dev, 1.31-dev, 1.31.1-debian-dev, 1.31.1-debian13-dev, 1.31.1-dev

Index digest:

sha256:ec89ea54f6642723c0732e488a921884cb9098ec7e1d4345431acaea6cc085af

Manifest digest:

sha256:8e7c90d91219d2ca95a689ffcaaf436ea334a0599e0acf5c8d1c7310b87e9363

Size

29.15 MB

Last pushed

15 hours ago

Vulnerabilities

0
0
1
1
6

Support

Active until Feb 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ztunnel:1.31-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ztunnel:1.31-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ztunnel@sha256:0ccca4a67a84038954195bbfba5ca6a7dff3421df3fb617eb47656bf6159f969
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ztunnel@sha256:e51ab3e98ced0f0bde2ab4a3066202304daba3cb256f245b00975c3738f5c4ab
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ztunnel@sha256:241eb43ce687e8b63c6ff1419da3a2eeb5855d2f3e7afb40074c22298b230aff
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ztunnel@sha256:9f5c03ae13b1c72fab46040c084a3eccf1e6cff154091c2d1969f425c1b12d93
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ztunnel@sha256:b3fe5aad0e0ec9511842397daf9071579193490a086ec0ec024c2c6c2cc8c900
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ztunnel@sha256:c329a8c63a164088a52894331450f262b5194efd7ad0f7ddaadd85dd6f847c89
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ztunnel@sha256:2f4895bfc470d373af0b560a7bfdae8794697913abebe935b70b4e133dc60dfe
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ztunnel@sha256:6188cc8bbf801f4b92c50f1f7d3a58b3d1ae6e364563941a8397c52c8da541f0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ztunnel@sha256:2f95079cb106eed8bc1e7bc3bb8fe1338b25f1e574c70c4d281a9b6e2602cd06
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ztunnel@sha256:5a1299dc1f3d387c49668b5c48a4fbd3940db996a1260de372404b2950711147
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ztunnel@sha256:21d4b49c89667ecd9b0ce1662592ccc29c1c5bc7c154bd53305213dda61c877a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ztunnel@sha256:be51295a33d4288bc9893e48b8297b6ac20eec0fd57f406cf7dd05e2a2b7d9f4
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ztunnel@sha256:6f7b2804d9ae4fc3be2bcdb7ed53464ffb3a1ab2c2ec0aac09f5bf082ff56d33
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ztunnel@sha256:90700a38d71e648a2a56d8b5136ad1fbdd628442cedd07d07f90b796dfbaa7c5
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ztunnel@sha256:24b0646a580cddd30b0ff39a06fb0960275836edb2d4fca63f50375c6cc902e3