Sign inSign up
Istio Ztunnel

dhi.io/ztunnel

Istio Ztunnel 1.31.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.31-debian-fips, 1.31-debian13-fips, 1.31-fips, 1.31.1-debian-fips, 1.31.1-debian13-fips, 1.31.1-fips

Index digest:

sha256:37b3cfa4e0cecb806200d6e39e5f0b7a1d06210764384e4dee6bb096ae244dd4

Manifest digest:

sha256:3017f5215e0a72d0b803320e19f6c7e77f2f0e97f1d43b54549369de5420624e

Size

14.79 MB

Last pushed

3 days ago

Vulnerabilities

0
0
1
0
6

Support

Active until Feb 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ztunnel:1.31-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ztunnel:1.31-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ztunnel@sha256:747be263b0d9f2f8bd1c3ba478554fc77ce728bf938793523d2e296efb350258
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ztunnel@sha256:14ac9bd56997f4b28f7326b5cb967d4e71aa76225520ac50d1efafaaeb0b7284
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/ztunnel@sha256:22b7bb4f52d8893cadb12c0a8cc6c245f7f0210aab28773b0d46b438e76d20e1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ztunnel@sha256:c4f60c5864bfc2acea6fd77bc4e711af47a61a4defd0f4ad25008402d76bdf30
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/ztunnel@sha256:59690b2ee6ddb17ec39c8582f1274c2ff1fb771fdbde13c9c8b1fabe47eb8718
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ztunnel@sha256:c2af473d1a6c88aac8f4f870b90e0f9a7bfe7f2804198515452f6a20d6dc2144
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ztunnel@sha256:8f2fb58d40f7870001caabbbfa669941ccab91d77cbe01a59952e655762ec81c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ztunnel@sha256:cac78354d1a307f20ec1c0eaadd4e421083ff773c1e3f0226c2b6640d52f497e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ztunnel@sha256:da4ebcf18dc9cd02f9e8ef9aa2752cec0cc727236b5127373ce895bd89d2f3ff
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ztunnel@sha256:3d37dab8bea4b2eb4d3eedc31e19429deaf1dd0afa57588662d98cb69184ee2b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ztunnel@sha256:3eb68ed6e5576d6788488aeb21113286dd594b5ac82cba47294e29b98f266a48
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ztunnel@sha256:0b70ac6ad841d8a9e4af5e209ec5c884e67cd019a9257494cd4c7658a56ed946
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ztunnel@sha256:1aba8ba62efb8f1610014305927a2e6508ad39c3ebfc8e6d043c036284ab7435
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ztunnel@sha256:7ff7344a8df334d51edf637a2851d80c3815b20295c420af895bf862f309c18c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ztunnel@sha256:09b48812b570b291ed2a1ca31f353e09ee519b9e5b58ba263473fc8e409ab610
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ztunnel@sha256:c16c15644bac6d6c8f60e111c43ad9553abd46cf7284e52e79fc103ef225bcfb
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ztunnel@sha256:054a57337bebab1072bef62f14192bf49438ab0b38bcc0f4a816d5d4992f6bfa