Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.22.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.22-debian-fips, 1.22-debian13-fips, 1.22-fips, 1.22.1-debian-fips, 1.22.1-debian13-fips, 1.22.1-fips

Index digest:

sha256:02cb25e889ee915270079d7d6e0fa7c06d32cb0bd8ebaf17037453ad5d1870eb

Manifest digest:

sha256:1b041a1e6965602f9746a4d9f6744b00676b9fccc816cf4e328106a9d12d8296

Size

23.02 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1.22-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1.22-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:841645f014928f96c50fe47c8600302c50e06ea1491439ca4cf3713e34f11eb2
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:a96e176bd47df550cfbe816fb5bf2e74a9c6b7c1df216dcfb2412a556236ac56
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/knative-webhook@sha256:e78766a0855153a0280eb6d3000d00f1d6d47ea5e6d6c6c2435ef26ae7796371
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:fb254d213215464f13c3c00764f2b1f3eb1b4859b1035c5685f6921784bb648b
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/knative-webhook@sha256:6886ebbd76c59652ea8fc809eafa134c6c1e42267c78200f57f657e26c25d369
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:f8d2149569bb0e60555a5d54a58f9a3e29dac74fece45e2f3eb049bc221f3690
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/knative-webhook@sha256:0d7f71a11c6293f2b7b40d970da883b72b7c97bfa69f388ac6c1c2d12c6f411a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:6095f1a9bff9ced57b3278c38ce1030d4319494e77b45cd47eab1517883283e3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:6b548a77cc98d83a2c8fa9ab6a75e09cdd452c6a5e90464bd6cc7e40c996b852
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:7a1a1192b4f8abe9179cd95ca8de53f2422d3ad06fd0f4d4787d931a7366b40d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:754a9c7397c0fde1b34278f88852f2ad3b8b281ce411d7a3759c4c1ba0ff6a05
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:40f9e195747a38b9f640d48cbf3cbd72ed0a55b311349840c74eb75f59fb2880
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:69492ecbb5d49d416ab8750f3e0b968e7d828f1cd639d2d78968c068d4f21b84
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:891bbde68b2de5aa67d830e9d59d4ae760e035dfcea24b6cdb28438a83f1bf2c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:a9a8590c49e051d1884a335448b81c8ad2e6b936a5532bee0a78d355b9675c76
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:8ec82e1f2ef3f3d7e7afb4479010677e202dee977a215a1d3253131b41a22838
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:727dd5d0642f61e1f10df01cf83bca778d02a905e62ea4ec513982fe0254bf42