Sign inSign up
Telegraf

dhi.io/telegraf

Telegraf 1.40.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.40-debian-dev, 1.40-debian13-dev, 1.40-dev, 1.40.1-debian-dev, 1.40.1-debian13-dev, 1.40.1-dev

Index digest:

sha256:7a6218925f5f0ce03f248c0a5c163d231d5f976b188fa4efb20f7fe5d288bc79

Manifest digest:

sha256:d96dabd2fb555ed920534c0a40aedb08a0d96695abd8ee52aeb597c659b8f138

Size

173.13 MB

Last pushed

19 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/telegraf:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/telegraf:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/telegraf@sha256:4051654febee40219590359d82d6b964a35a3879d5522c999ccd7a1f588fd092
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/telegraf@sha256:1fe581e72bfe66c6b8302a349659a6149b92d726cba83e6246a4080f040e6c14
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/telegraf@sha256:d5addbdbb96ab7d805209ea28034baf587b2b4da97f47c015387d2748ba809ab
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/telegraf@sha256:9e96bb0eb70ed1f62c358785afc0faee509e7f2d3ad04c1b17ca306d6c8e48f5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/telegraf@sha256:6c36bbf01ba6263aae97e93668f9e945f70ff996f3be2d745a6eede5cb0e8e0d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/telegraf@sha256:23fab6c49584dadb65e6bb8d7da4e561b644d4f36ea36741c6409d19048c4a07
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/telegraf@sha256:5fe331767be3361bb0950d7c57a0f9c9387bc3038c5316de6475e9b518586322
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/telegraf@sha256:cb67cae229bcba7286faab9773f9a3df90650749771b0d019532ee0bcff8e13b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/telegraf@sha256:2df4106cf44a946ad8baf2299e60354f9047c222c64c66369c9cd207c4c345ee
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/telegraf@sha256:fe79a6b0b8d44b7581ea7641745555abdb657f7228db1226b452621a3ce6bc84
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/telegraf@sha256:d92bf34701224016c66c9cb41c21022eacd572c78ba008b25009727086fe0031
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/telegraf@sha256:4cb9d4dfc97b5d0832ddd540e2f014aed649aecbb18e9e1ce739854474df2698
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/telegraf@sha256:cdb2102122e1b358b24ef319a8bf1f8b705a1a9c3d09372f07ba3baf6e77665e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/telegraf@sha256:af8c06f16ff30061e962bb36adac9477618f55df4c8beb10832b87117bdbf91c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/telegraf@sha256:ab5f55996a43fc429108559d7b430e4795ec0454ba9697199c8acd67fce87bbb