Sign inSign up
Traefik

dhi.io/traefik

Traefik 3.x

CIS
linux/amd64
debian 13
Tags:

3, 3-debian, 3-debian13, 3.7, 3.7-debian, 3.7-debian13, 3.7.13, 3.7.13-debian, 3.7.13-debian13

Index digest:

sha256:1aedd73935670f671be29b8396d4667f391a0058c513911743bfdfde5447971a

Manifest digest:

sha256:979bcb29dfb8c735620b915e040e4011f1c2ae166e2d36d6d9b96e8ac7ed8f15

Size

43.13 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/traefik:3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/traefik:3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/traefik@sha256:7ad3b84a6f2629905f399be59b105d7ad2536946e22e8484775d8cf844522def
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/traefik@sha256:02143a581d1ddd797a5bddbf8925141386ece48e681e1088ccc091da89eb41b2
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/traefik@sha256:0ab1e9af942ac1e7525e0acc538c15ec6cc7fab84bf5aeaa99a8887f2a78e724
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/traefik@sha256:355a971552b7126150f66d2b4004ac7e848fe85b923a57f0a9e2a7d7f0da3a54
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/traefik@sha256:40884147d2c7f318ac0e73a9316211928e314b303ef64a49c91097f45edb2cbc
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/traefik@sha256:d7d42905862a3ddd32547a47dc8a89dec1e1131df7684217bea6670ebb2fef4d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/traefik@sha256:ffdd6013c878c30b98c5e9d4ef9102593ccbf9d2a54e96c332115b7350eaec60
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/traefik@sha256:f6547ae09622d5607f371933e178c1c18ff18d2c3567a2e4cce5246056f2d6c0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/traefik@sha256:0d09edbcf94549d83bdb6e42f0b22e5550ad7ee338a3861f918537449aa74918
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/traefik@sha256:9cd0b2f9097fa2309d39b84763b0d7878d4f0b69c466050c4c3d1c0a8b001d99
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/traefik@sha256:3cb8b02094d8fc63c40f745d595019c9f4a8ac2c74467d9896caa6459619b169
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/traefik@sha256:1ad3b1ea284372360210505a56d04b2285da52b96e9bbe54e2ad5cb65225a502
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/traefik@sha256:f566e9ed01b90f138a29db4b3b7d1fb05d3fe8de9df75304cf78a52f6e11be0b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/traefik@sha256:337fbe2201942cf08b28fdfa00db51388a99eefc73eba66222b45a1873e7c143
SPDX SBOMhttps://spdx.dev/Documentdhi.io/traefik@sha256:6c69e0ff2e5116ffdb41a009fd9bbae2a9362e89ca7a43582c774f07c63fc480