Sign inSign up
Istio Ztunnel

dhi.io/ztunnel

Istio Ztunnel 1.31.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.31-debian-fips-dev, 1.31-debian13-fips-dev, 1.31-fips-dev, 1.31.1-debian-fips-dev, 1.31.1-debian13-fips-dev, 1.31.1-fips-dev

Index digest:

sha256:99f9d98027c3acfb0585f60058e0bcfca645d7e213d25af374314a9e2e28763d

Manifest digest:

sha256:1c63fc234343a5b2dc2ec0f919aeee6f784c9719ed4ff1aea2ae9b0450c42e2b

Size

28.85 MB

Last pushed

20 hours ago

Vulnerabilities

0
0
1
1
6

Support

Active until Feb 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ztunnel:1.31-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ztunnel:1.31-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ztunnel@sha256:aa37433fe69c5c93c2b633176ef0717fbc40759f926ea6dc6af7aa34f917ff99
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ztunnel@sha256:27e92d4cca51d5911850eea5eb7054c602a984885de94c1072df90894ad71bbb
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/ztunnel@sha256:58d45ad66952da4e340a98918c08986c5f182c3c014e002264203e2abf484623
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ztunnel@sha256:b80b288f7899c59f1a460ed698a65d6805def52a3df3481a0b116b1f9e3e8c05
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/ztunnel@sha256:e7f2f44c4756392127520561e54227a9e2ca964e429c23c0fb446f7949494016
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ztunnel@sha256:46f1850da54d53d7988d522323cd875eff5df47bc9907c5c8d0ceea15ee5c150
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ztunnel@sha256:ce1468e4a333fb33d5b1353b28d430d64635d9449945443c5ab96c625729dbf8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ztunnel@sha256:c02ba05ed6249871c9c70dbce40baab5a1a3894423b783ab40ed13bf1164b8c6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ztunnel@sha256:36d6a55a3bbcd1b2559b51f9160757c51f5e0aebf5551149fabb94b8e8a20438
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ztunnel@sha256:ad5bf0084b3fcc061f61b3dc35349db29ac3f15ccc27b84cf04737308dbb9c5b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ztunnel@sha256:f3cee2fcb0c29229bd6361c751f6e31fbea4da62b8f18271e3c1601bf735ebcd
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ztunnel@sha256:781ee93b0f2663602bb15ef3c181044297f51bbb3e372dd32c040dad76ab2c4c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ztunnel@sha256:dc7085f50e9e4dcaf1b9efa6ac7f9a518b79660b9654ab64cd5ea0658c3a0072
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ztunnel@sha256:8f3d89bacd282702382a0d9aaaeb06bccf8c37c5fa52d962aafc400d98a7ef08
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ztunnel@sha256:2ef99a6e2122a75132775062016ccadba927f1718ac9cab9934c0506d9d17b39
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ztunnel@sha256:e7bfc62e419874842374a7154557622e5d56f650e2e68378af1e47b470c9c5ea
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ztunnel@sha256:a2de8bda497e0a0a34d8690c830d7fa3eee62091a38fa6496709406950dc8245