Sign inSign up
Cilium

dhi.io/cilium

Cilium 1.20.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.20-debian-fips-dev, 1.20-debian13-fips-dev, 1.20-fips-dev, 1.20.2-debian-fips-dev, 1.20.2-debian13-fips-dev, 1.20.2-fips-dev

Index digest:

sha256:c8ca885b7ed56c783cb159d0c04117e99bee17cc3c99e8fafad4680b6ed00172

Manifest digest:

sha256:04f3eb8050ef5426e78359ae0a5d039388cd9a5081a1535c8a5acc4eda3e90d3

Size

205.01 MB

Last pushed

16 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cilium:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cilium:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cilium@sha256:991d001607547c1d3a5926855f6612dfc1820fadc6fd49ff47c05d1b7beb4284
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cilium@sha256:4e7596f443ffc1c270e760e85021909ff6233832a1cdd773c5bf179807a1636b
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/cilium@sha256:eea93ca95e4ff556fc5d80021f90599ec6a08aa0592aa70f923c126c932ee180
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cilium@sha256:c0bee80f60a93789f135ca5499adccdd626673789fde007547374b7a0546dd90
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/cilium@sha256:410c2d43ecfce48d8e2d400c7776046f3a2d42da0667125211bca3d2dff20f9b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cilium@sha256:a7742869c990f7dc3646c6d838b4609e20d7bd2e6143fc34775f3e54226fa382
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cilium@sha256:a5c0a2492cf3ed62812a87453d070e681598e443aff8862260efde6ec340c273
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cilium@sha256:871ff0c3302c0945351a472149d8c6cf899ad815d5a177d73ad4fa40e2ac2f00
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cilium@sha256:0d7dd09d2c24b3f85b2951b5486834c1b568819bbfd98b1026d7f45cce4271ca
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cilium@sha256:25f4b3978c1ed32deb04d155068ffc1d05a51084575e68f85bd0529d8ae35e5d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cilium@sha256:c73785c683ccf0887ecac28f472dd81132dbe2138a06cc88935f7c8d8ce60165
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cilium@sha256:0c8bde40c4848331434334cd5c70c5abd1be305937f73b7e6ef681061eba312c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cilium@sha256:5b365a63d00ad33625cc4b3a248a51b3c23520be10200d6b9b05917b1cb1966f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cilium@sha256:c9c59538d2c0f9c967d5cc13c752bcad7c23c63467db5b31779162f2f9feb39c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cilium@sha256:862baa951af03bd8af6783ead99ab1b42e213626a2fc4b5672820fa59cfb776c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cilium@sha256:5eb78e5df929e4834af1eb07fb2159c27b6f145d0e29294cc62c745633756a07
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cilium@sha256:eb202eb2ee653e9de194db72300c9173a30649fcfa623217ffddfe20f29326f0