Sign inSign up
Kyverno

dhi.io/kyverno

Kyverno 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.19-debian-fips-dev, 1.19-debian13-fips-dev, 1.19-fips-dev, 1.19.1-debian-fips-dev, 1.19.1-debian13-fips-dev, 1.19.1-fips-dev

Index digest:

sha256:ce3d637827a8f647fc1a317c3460dc3600048e1f24222ba94b354a4c11b88940

Manifest digest:

sha256:2238a2543d4b9196141bb257d5aba78cb3220ceb5362f904626c423c2b5c01ad

Size

91.97 MB

Last pushed

1 day ago

Vulnerabilities

0
0
1
3
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kyverno:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kyverno:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kyverno@sha256:57225f381c8e188bfc8f4afab0c86ea04cb40424316c0733407fc3ff1acec1b4
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kyverno@sha256:f399c958ee1eb92934e19d65736b59948f32d64a92ce0f26e20dfd42d861fd10
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kyverno@sha256:1a44cbfd93cf601a4e01461ab33246e21e14738a28ab71bc373b01166dc02b78
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kyverno@sha256:655045c1606cc38bc8599aa68a0b2f8a4d450de8a78f921c0b6ceae0dd671e9e
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kyverno@sha256:96027773c1b480b2cf301251e551d61977521ab550dff5a67008ab6ca409816f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kyverno@sha256:6ce16890cb92c7e6f43afa32073b76cbe56af5c442ff7c34872f2921e2eb3568
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kyverno@sha256:fc3a79cadc3f92073d80419f46eff8d503420d57ee6833335d4ea6d01adfc899
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kyverno@sha256:a31205b40489c382b2377d247a2fc0e54a9d15003d7bdf4b2ad3a19cb666bac1
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kyverno@sha256:61712dbacfc0bd16e4fbe9693f263d7b363518f99182397b584be7a52d333e65
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kyverno@sha256:795d78a3da2a7764014d16b9aac6524ad39670bdef92dacb944ba5f2b6a1ad58
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kyverno@sha256:528a4e4ad5d0ca31e6b4ed0804effac3585f48bb6d194cb581783770802e619b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kyverno@sha256:557c743d6866d4b2ef9ebfdd8df6b0b39c5da4ba24b912d4cf87b5d20073eb1f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kyverno@sha256:7ef8ce81fdd2d7b9cff0bc0df8ab3e022a77e9ef5376b504a9c8469f8436e3a2
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kyverno@sha256:2e379a014cfb776253eb58439b89ee1eb644f1537172ec575f710fa2bd43e584
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kyverno@sha256:efbe1c7e13438933d03a53f004c18ba8c52eb77f7f85a69a5be39b8dcb5d44b9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kyverno@sha256:990a4785bf0733bb2b76afa8b549bbe0bbe12da34bcd9c8a4f591535aaf9e8fa
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kyverno@sha256:ec15ac392cc87dafc8be6b80591868719ccf00ccb5dac37c83921721c983e85a