dhi.io/cilium
1.18-debian-fips-dev, 1.18-debian13-fips-dev, 1.18-fips-dev, 1.18.14-debian-fips-dev, 1.18.14-debian13-fips-dev, 1.18.14-fips-dev
sha256:ca267f0b38d683c98cef1df7d30eae2a8940e7e08e94e89b1a0efeda0a5368b3
Manifest digest:sha256:c91c365b15995ec56fff7b49b8b87a365f7b3f9ef2a0c7602b6c40aa864e27e0
Size
188.07 MB
Last pushed
9 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/cilium:1.18-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/cilium:1.18-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/cilium@sha256:51f4241eb8f7a505b593c9ca991a4c862f55d1c3f30071400246335c387c172c |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/cilium@sha256:31621c8fa8a72dc543b58880bce35bd8b10e81cde92992295796b41f2e4e26cd |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/cilium@sha256:5d2a841d5016cf7ab59bbd688b0d2591be76af7ea2d972518922b230df27dd3b |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/cilium@sha256:5eec4bd95b7ce13e427d25921156f0ebcb1bb28e0535b7d9aadeac1ab5ecedcd |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/cilium@sha256:cbc2c5644bb40a7be7c9da020f8883d3bc73a520c008713c080bf6da9d555831 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/cilium@sha256:5db89e0df57e9796c815e50351ad4d27e5a75d076bca2f4f42d44b52533e3531 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/cilium@sha256:544a7a58a419521b903ad1f4d735e852e893b30c623b2dec61e66b91b874af3b |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/cilium@sha256:6d8b95af6762f3b884e9ac3ec3158131924f7c4d3e16158c647f6f18f1176d82 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/cilium@sha256:ac58fa5c4ca34075b5d5bed71612cfc789e771842dfbe497a6e958d72302e9d1 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/cilium@sha256:f4a357eb0510043bccf5b8ab97367db6f417e08f9b1c64d2135bdaf148cf5fcb |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/cilium@sha256:974efc0cf316d27a53de50a07549f822762df71e7fbf5857fe229694cd64c652 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/cilium@sha256:124eb9a0bdc999716c1234681e94321404832a2a8ac23c084f9db8795c973c92 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/cilium@sha256:e8ac09782206c6bad47ac41fa5fbbbec5dac91beae471dfc2728b9b62fce83ba |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/cilium@sha256:bfcd068e7c6e77bc35572e19a9e7945e405c7cb916bfb1aac9ad2569a67cc610 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/cilium@sha256:ab095b7c97117e6d2ff1263187650cc8dc665a8fcc87e4dba842b2fb8941439b |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/cilium@sha256:d45d67110267041b8b57d93a271ccd290bb1a424a55d7aed90408f4e9e8fc085 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/cilium@sha256:4f760154d23d2f7fbfbc7215a93296ea7c2c46eebcdf86cdd0755825e15e0fa6 |