Sign inSign up
Istio Ztunnel

dhi.io/ztunnel

Istio Ztunnel 1.31.x

CIS
linux/amd64
debian 13
Tags:

1.31, 1.31-debian, 1.31-debian13, 1.31.1, 1.31.1-debian, 1.31.1-debian13

Index digest:

sha256:7beedc39ebdc9e9cd4338848e39a7c4ce0894442073de18abc0b7eb374f68f35

Manifest digest:

sha256:9b009700f8cc36eba5a325c3a0ec8f59b899a78f5af04d12079e3602e2d284c8

Size

10.75 MB

Last pushed

4 days ago

Vulnerabilities

0
0
1
0
6

Support

Active until Feb 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ztunnel:1.31

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ztunnel:1.31 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ztunnel@sha256:cfd3848b3cc7555745fba5da5616b7c785545b47d434a5c318e5cd1bfabd656c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ztunnel@sha256:14a17adb36e0c2d62b604e78015bc4cc5755e1f83e4e9562c33c6ebb9385759b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ztunnel@sha256:268c595f9c869e763dba60a0fd1f6cc540eb65dd9c907d5faf79a1917eefad07
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ztunnel@sha256:0fb67af8829fcd9bcb64b65e630880785bb81f51b68781b00eac91bd70b4a0b3
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ztunnel@sha256:855af8421aa032c695d42900d241b66eda63c25d05eecd4ea88a3092fd1f5d23
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ztunnel@sha256:63c22bc05462cb1d08b12d4d50f43477197029365f4ec426c02bebeec4c2576a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ztunnel@sha256:2f23b70631752aed7c636b7c31bd5f3facfbbcce203da35700f9a638fe08f6d6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ztunnel@sha256:27495a102e59e469e08d080b4692658c1833931e9109d0d70f80a49591ae58ca
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ztunnel@sha256:508309becc8bc2a916d6eb0022ff69adc71a6c341e5bd58c3612e580c47c64b5
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ztunnel@sha256:99a909d0b0fa0291e51e62a546c1633f4f00002b4fef481114f2eeb2805c7a17
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ztunnel@sha256:406a0178a8ab14f9f8d25fd07dfedd4641b6cab03719b1651652aa0d010c3968
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ztunnel@sha256:a9c2775731b435c72913f772a26e324e151e96fcff9a54ba1ce10a68566a7d62
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ztunnel@sha256:9f8d5746b553b9abde2c7c64ffeb371d1e528214300cc7a3c74c83d72eacf7f6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ztunnel@sha256:d6f9da26958d4dc447dcf8433bd2d6596f3190d7be897653e1f002707957c7f1
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ztunnel@sha256:4d7ea87a18ea4f046840563442800ec293b9bbccf65c433585677557559c6010