Sign inSign up
Cilium Hubble Proto

dhi.io/hubble-proto

Hubble Proto 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.19-debian-dev, 1.19-debian13-dev, 1.19-dev, 1.19.7-debian-dev, 1.19.7-debian13-dev, 1.19.7-dev

Index digest:

sha256:42d2ad43be00bf172deb7894361bd61268ee80d09f7485c7736d79e67243040f

Manifest digest:

sha256:b1651410917a794bb8d5702327b15e95849ee479e26a16a6ac3872a6d81fcbaf

Size

38.41 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/hubble-proto:1.19-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/hubble-proto:1.19-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/hubble-proto@sha256:5bc9119c8c570ae46038d9333b46325981470e63ddf073c6764c563b098e6bdd
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/hubble-proto@sha256:814de0b5d331ab4c094c65788aab93b521f80a2c0297b14419870bac2a1700cb
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/hubble-proto@sha256:e094e89891a3df9d9f8343f9a1ab411a4ef7c3d04d0683b9bbeeb807593c4194
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/hubble-proto@sha256:aee02bb175c298b1d808b4a4dff918d5781a1087fdfb937c4258c355ce78e216
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/hubble-proto@sha256:6fd0f0e2c1797d18016fd07f30bb9045e6ad8a7e3b57aaef31a6e582aef3e916
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/hubble-proto@sha256:9bbacc49aa0486ab0b2a51ec9a23152728a4d82ff48f6a961e2507ed9f102acf
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/hubble-proto@sha256:4b13bd19c65dffb7b0bfe3d9c13a8ed4976ae408190e22a2391a3c329a076d08
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/hubble-proto@sha256:14b00815af6d53c1e7bd534a316aaa7ff836fa19bc67583bd5cc622949b91c29
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/hubble-proto@sha256:ccfc42373a0ce9b982b9c839fddb3b712d8b33b9963b087622bfe9598978003b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/hubble-proto@sha256:f7adaaeb38692ede17044520f4a0bcadf1deaa84bea339f0d787d481bb15fb81
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/hubble-proto@sha256:7b20cac8ae2c4468ba8f1cacafaa21aad945d636e69b433d7865be3b57ecc936
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/hubble-proto@sha256:8244b246a078e0dc0624371cccbd8adfbb06265e24f184ee5b5c78f0e1cec294
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/hubble-proto@sha256:c6b95b25ff37a331a8354bfa8e42f10cc45eccfb791fa1d5f60f8ed3920d3023
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/hubble-proto@sha256:b53eb3df0b2d3e20745aae7967cda46bcec8ddef0e17990e0ba0c17fe0442f95
SPDX SBOMhttps://spdx.dev/Documentdhi.io/hubble-proto@sha256:3b563f920867495dd541243260d78c895cbeac6f5445c2eee22e65339992bddc