Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.22.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.22-debian-fips-dev, 1.22-debian13-fips-dev, 1.22-fips-dev, 1.22.1-debian-fips-dev, 1.22.1-debian13-fips-dev, 1.22.1-fips-dev

Index digest:

sha256:dbf059503e1f14cf827dd189ad9e23c4d3bb056bbb2a3f737dfa2f89970cc5c7

Manifest digest:

sha256:33dd6864e0f39e7de135f2ba2aaa4bd9ef437db2a91f2478ab022fd2e198bf0c

Size

53.62 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
2
1

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1.22-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1.22-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:9eed83ca0965eb724597705aa22ac423aeb131a42e1af76c89b2d96e00897936
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:e5fd2389a46213eb033acfe1d70af5da10a1c607674d4b9b4c7093d66d8a75d9
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/knative-webhook@sha256:909b295e22656810e6e41aa407057c55c4d773c9ac5bf36c3db15a443e3c4789
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:aa4a60b0cf9f12069f201c911ac9a77daaed4e97ec7b486fd0b8422e1a60743d
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/knative-webhook@sha256:d569bac673c27204500dc713eae9e8fd07f6c6cb66431c8206a463e69a2ae944
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:b10245d409be2efc98c0b62ee6a344dd7ed9cc87a7d18b965c26c1cfa8eef6bd
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/knative-webhook@sha256:50798f177ce9009fcbc38e418799bbba30a585bb7f11cd7c73d616909400b802
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:8ed30f39c367e41815efdce79b60f539bdfe25c2c28cf76966708cf433aa79e1
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:fdc3dcf2016cb626d8338fbe0fba9fa3118715ee064475785237e2d4c22bc06c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:2fd8bed194b9df535fcf1ff3ebe6e818deb2d98cd2ba558e3464304acef552b3
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:a8a6b8cc4f9bc5e47068f280e83540c5bbe1e346f2f85c991b22f79f28fa02fe
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:c796b702dc3717198b0e24127af6be3d7d3a589f9427fbeb7e54042a152d4a48
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:a2086080706a74762fedac66fd9e882eeb4e3d1960d61fcddc8fd82851f5d1e9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:82224ed838c87e30418478d972c7f92ac692137426b141347ae54961f39a626d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:7c0bc94512292d2a8434ada674d67b916b163d965bd6f575b94a265ce0d6f829
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:c544a19c168d7c0e1743d0113ac280cf4e4d15931eef402993d965ec53f02371
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:10a385d6b51b4f0d7e1a425a7c0d1d95c5b8e98727a5c8d4c4c55155023906a9