Sign inSign up
Fluent Bit

dhi.io/fluent-bit

Fluent Bit 5.1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

5-debian-fips-dev, 5-debian13-fips-dev, 5-fips-dev, 5.1-debian-fips-dev, 5.1-debian13-fips-dev, 5.1-fips-dev, 5.1.2-debian-fips-dev, 5.1.2-debian13-fips-dev, 5.1.2-fips-dev

Index digest:

sha256:4a403256072931829a750d186391fb3ac2601740d8f660b96cc5c2b73f189530

Manifest digest:

sha256:023c2f272d7d5020e2379100d75e7f58e9a8903201dae5f25bf919fa9243ea52

Size

30.17 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/fluent-bit:5-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/fluent-bit:5-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/fluent-bit@sha256:ac759bff02a27072921ade76edc9fdc1b396fc8ef7a10f90494b312f37c8a938
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/fluent-bit@sha256:1531d5b66b48960bbc24396b9441c549056e91485e9b8660c134ebf9a89d6008
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/fluent-bit@sha256:7cf8b684796a37bb4985a25ca66229b5498bbc42672a5d229fed3f905ee1dd36
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/fluent-bit@sha256:173d39c98e9b70b3825ccccbfd6915b84e63607542295074213f77aef7410471
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/fluent-bit@sha256:229fe456ef38f926e0b1b20797ce272a9997fc1d3f95d530e1b75ffb44b95863
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/fluent-bit@sha256:bf8bc8779f3eabc48cb534bf6b03e589ac20bb2853df0a8be2a11a5ee6d86d76
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/fluent-bit@sha256:dd4c2e041b3fd7bff0f4ed665efb69a9d5a1370db55273cd3a2207dac34ea561
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/fluent-bit@sha256:1b55d5e6dcb0e0b7b78d3fcca00f05979459f7d26bd1d258baaa07c9a95e2f08
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/fluent-bit@sha256:05ab53d03c9c845fdc276fcbf03703123b5eaf76c08673256e50dd4a9ef683e8
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/fluent-bit@sha256:1d1558d781d94123609a1731c1b4d99068e996b6e5e6d697a00d0a4138a8aeeb
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/fluent-bit@sha256:5610f220fbe2685102baf1cd0f809fe999b3264966a5a918711234ca6412bf62
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/fluent-bit@sha256:a4f065ffdb9551f587d579f9d9361b3cce415f9a50fefd0c23399a50cf34bed5
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/fluent-bit@sha256:81974cb656be88057359bcd1e49068b4b7be3e0f2f9c75718be2930720f7c6e4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/fluent-bit@sha256:89341ac215d7c1e0eb295c172c88f64aa385269b6501362cfcacfcd4762e1973
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/fluent-bit@sha256:df77452f6fb6f50f8f83caf3e3c2a4341fe80821607d3c20f44fcab98cbe70b3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/fluent-bit@sha256:ac3642327a4a08d0b99e182063636eef5bdd10c7277b7b301a916cbce3b6af0d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/fluent-bit@sha256:71c3f967bdb727aaa8252dc415e71975869a5fa3b71f01fd81ec9eb899c82a74