dhi.io/cilium-envoy
1.19-compat, 1.19-debian-compat, 1.19-debian13-compat, 1.19.7-compat, 1.19.7-debian-compat, 1.19.7-debian13-compat
sha256:7bcc66c7c516435613b3a8995ecb59d2c283f57ef0dcec00e8efa16c945e4db6
Manifest digest:sha256:2d94bf1bb48338b8392c9defb9dadee21ef5b915917fa28398211a91475b42a4
Size
39.15 MB
Last pushed
6 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/cilium-envoy:1.19-compat2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/cilium-envoy:1.19-compat --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/cilium-envoy@sha256:add434490d97b011feb4e1a6c092dda7db5baeec56451aae021173000efedeaa |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/cilium-envoy@sha256:fa7a4a2b781aede88b6598d283cac205132d66f0a5113c08cfa59e2c982c307a |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/cilium-envoy@sha256:b71640f6fc298b83d6525fca1b2325e890f3662c4e4c5a6e45a0cc7b8c3f35f0 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/cilium-envoy@sha256:213572bad925e2b13eac8a7df22971297a5587f4635edbb231937ce6323dd5b4 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/cilium-envoy@sha256:b05538a1d5a0fb63f2f0b3678f3edff9fec85eeab97966110aa88d29e45f6338 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/cilium-envoy@sha256:5020b9371f9c2ba4d68c995097f8c4a5affed92e1b13877ba578843d6075afd0 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/cilium-envoy@sha256:73ea1675f2bd46373d1ff541dc3106bdb41348245ee7f0a4dba89513080e1d3d |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/cilium-envoy@sha256:9c7610c15d754e4eddb7f810a711514167cad55c4b8de372262953367250514e |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/cilium-envoy@sha256:d49bff35ce0ac14f1bd79f3adfc74b73e4addc9d72d548b0fba2144055b9b415 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/cilium-envoy@sha256:f16d2809c959012e4ed9dd946a804c7160b3b91ff9d1111fa78ff2e33b8b4400 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/cilium-envoy@sha256:493234b0409359fce8fe3e920dfa9c0b1268581d4d9a6fd101a26554bece3111 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/cilium-envoy@sha256:4db998c1f36e3b0f530819ce0b1f981ee34a68b0329a63adbbb8e34cbdfc5c14 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/cilium-envoy@sha256:947364571a77b1fd3d1ba2354864ab31be3976101f8534251a3b50f8957edeac |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/cilium-envoy@sha256:a5ec90ba3f20983520947f644a619d358f15e525bd51c1e9d523900b80bd82d3 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/cilium-envoy@sha256:88bfa6a314e0b2b01768cee505dbf99c871565488b0c17882b50fd9eb8befd40 |