dhi.io/envoy-gateway
1.7-debian-dev, 1.7-debian13-dev, 1.7-dev, 1.7.5-debian-dev, 1.7.5-debian13-dev, 1.7.5-dev
sha256:d346404ed5ba35a5ef8b2dd71b87384854a2c0f9563abf9a2605b856c855a87e
Manifest digest:sha256:ccfde92460f8a3b969d90d6e81d95ccfb5e462691fc4ba5a54e3473f6204d3f3
Size
76.47 MB
Last pushed
3 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/envoy-gateway:1.7-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/envoy-gateway:1.7-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/envoy-gateway@sha256:fae6eb77bfca7b6cae749fd995939945a69f9d40d86d57365e906e58d192d88b |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/envoy-gateway@sha256:bde960b4cc19918c600c3fdaae6baf29b4afb9d0bd431f5c2eaf7211a94b4dc0 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/envoy-gateway@sha256:b36d8ee866c4a564d833310bfca28175e4a1477232f5fa52ff16902e4aa8379d |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/envoy-gateway@sha256:4d90ec18e6d9525de431231bb88ccfd24fa4303565e3335e38546f63513a0735 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/envoy-gateway@sha256:31b5ffddc82bac43fe8a23302dac3e7eaa3f2fca498d9e7675cfaeb2d7553469 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/envoy-gateway@sha256:881ed7b76715bf5ff1abc54118d103f63662b0d1c8fcd0086933dc231ef91a16 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/envoy-gateway@sha256:eb96a930023571acddab446757f0ccd2427903fd43aa97f89948390bde3b15d0 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/envoy-gateway@sha256:3e76b0ae6a5ffd250fc80e6dba818cfca57996fabcba8eba2a27c40d0f7d42b3 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/envoy-gateway@sha256:fff32ead5af24342ed2991ab4bfd6ce5b5b1d19377cc9a37c7904bd35fe19882 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/envoy-gateway@sha256:70e21f62771c2e3a6254a99b8c51142590bc7808324b6c70354c43b273958e00 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/envoy-gateway@sha256:e2bf52d2a27a3870223cf961166ff491d433dd6ccc268ff3fd14f647cd4e3c00 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/envoy-gateway@sha256:477490c3ef94d8c124bfd0ac8cdb59ccc5118f8a86c81fb2c5bbd4ebde8050e4 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/envoy-gateway@sha256:0652b06c0f1bc5e2aca0735c7aafbfd92046e95d6b8e0d3e74dbfcbb89a24435 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/envoy-gateway@sha256:139d2c54af4956454fa1d3b539fd2dc02ca6e87558a84120b60878171a1c0a43 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/envoy-gateway@sha256:b00f18e7a1a5a08e4bc156d2e22469cde77ac4c3b828eced89dcc795e14093fd |