Sign inSign up
Envoy Gateway

dhi.io/envoy-gateway

Envoy Gateway 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.7-debian-fips-dev, 1.7-debian13-fips-dev, 1.7-fips-dev, 1.7.5-debian-fips-dev, 1.7.5-debian13-fips-dev, 1.7.5-fips-dev

Index digest:

sha256:4378d3f6b9136b123c9369b8db876d9e8c7dc2433b97f3a323dc755ffbe1537a

Manifest digest:

sha256:629020759ef0504a1f42c53976a052f5f94b2cd23616c4d7e1d1be016de019e5

Size

76.81 MB

Last pushed

21 hours ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/envoy-gateway:1.7-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/envoy-gateway:1.7-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/envoy-gateway@sha256:36aacaadf7a41e7b18c6720868ec15543b6cb952a35a442ee519d2f0e8b0e1f9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/envoy-gateway@sha256:16c934da4b98e314c71da1cf05b51dd1e013a496a543eea54de309acb74e48ea
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/envoy-gateway@sha256:1ce137e720873ca892158d1b2828ca3812ef03fdc847c361d6386778f3250515
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/envoy-gateway@sha256:879ae4745d8ce3ca6205effa84e6e1ba433f021353995465839bab9081843e0c
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/envoy-gateway@sha256:252984ebcf3b7783dd8ff37b512b9263ffd54b168c1a4f43ea65c44b8e813025
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/envoy-gateway@sha256:319e2ef04b8aa014d6807465c872bed0cb9b9f2471794c010f02b14ecfeae003
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/envoy-gateway@sha256:b5562dc3ee80f823bea855f96307b3313c364d02a083c36e401f4ef2a022f3cf
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/envoy-gateway@sha256:ffed84f9e60b90881e76731fa5d9683d604d8729800c9783889911b3a5c419a1
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/envoy-gateway@sha256:fd172243b9ef22156299770992956fa15cf731811874779cbd0a3ccb85b8fd5d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/envoy-gateway@sha256:195d4c5fc24b78ec35c5746fe8adffbb6ed0d073dc88bdacad2cd5b3f021f618
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/envoy-gateway@sha256:ca673097f4ed8ac7f7759e2867f2bd046a3b42f14006bea38a1cdb093e683bfc
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/envoy-gateway@sha256:3b7681c8819db90d4ebfd5047e3ea145f781206cf57f73a1a0da11821ed9a867
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/envoy-gateway@sha256:63817ff10ba5de3676499c2c5b9e4bef0bc658a6baaa10f7de2efe48d95db34c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/envoy-gateway@sha256:a586523bb7547c65e7bd8cf05d87aa2836ac2a2584b264a385f626ef414a0e61
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/envoy-gateway@sha256:8417600f379f9a856b1be36be743df60c309aa8cec1a27b737e68556c2f506ae
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/envoy-gateway@sha256:47ecb22b1a0e60ebf85f77ecd5cf16652bb510f09911be63a484cb4c4b09ea89
SPDX SBOMhttps://spdx.dev/Documentdhi.io/envoy-gateway@sha256:aec5074be669cb782cc0e1d056f8bcd84a6ddfab4e6fcc64f99fbb8c17e78b7b