Sign inSign up
Jaeger

dhi.io/jaeger

Jaeger 2.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

2-debian-fips, 2-debian13-fips, 2-fips, 2.21-debian-fips, 2.21-debian13-fips, 2.21-fips, 2.21.0-debian-fips, 2.21.0-debian13-fips, 2.21.0-fips

Index digest:

sha256:e4df17b4487fc05a12b88199c2abca95b061be64eb583ad254be37d859896e6e

Manifest digest:

sha256:9f27ed662d332e85a32b8cead78bfcedef21c32c631de135f07c5c35d6a92e12

Size

32.37 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jaeger:2-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jaeger:2-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jaeger@sha256:e0f980563eecaef09818468518b852ff3fe4be3dc45d6446580fc09c91147225
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jaeger@sha256:0ed25841d30d83d9c119e65b00dc76084799412a42e241805a72d9b72f813ca6
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/jaeger@sha256:310de30c785b411caac23ce11dcf6094f43862639061b86397c774ca36a6b1d3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jaeger@sha256:88b64cc355f57ae946b4688171424921234f2ffeb57d9d196c596f9e0022e6dc
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/jaeger@sha256:1fde5e6f115ebb8b5e5a91f75f664b73a57773fda7138ef3a1c140d82a40c8d9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jaeger@sha256:be45efff3e88172e07f1eedb91e47a6ddfd8e206255e4aa3a8cce147232f634b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jaeger@sha256:d9111bf18aebbfba4271af876d4d5b26f302b885ea3b690533fc6981c9228595
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jaeger@sha256:359068bfebd2ca2fd045ff3449c710ca688ef3a4e69fcf98844cc6d8984a92ad
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jaeger@sha256:191aad68bafca2e309ed6b7406d0a9e84606b4f4cf34f7af3f4382f9fa8e2116
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jaeger@sha256:b1fdce7fb80d3c757d1c3f99a29e6ebdf5a8e7463cef0ce960dd1b792c926385
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jaeger@sha256:727611371f9aba119f963205e47f334d153eced7af8a9a7459cd9badcdb876de
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jaeger@sha256:98e08c8036851343b7cc02ca692a8597bb37dd2c0126663bc07280c4cf6690bf
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jaeger@sha256:26b1fd6f67efaa1c4fcb548dafda11bad273d9f103599280ecf27e709ed37e12
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jaeger@sha256:afc1aa6f84ee4ae3d2e648453a548e9a1bb5920b94e755d6b23fad581779b4de
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jaeger@sha256:2be901c7fdc78048eecca3fe43f2aa3cec8e226c91e49e52de5520e0cfed6db9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jaeger@sha256:9d475eed8d9290e3dc5434f6fae6ff469f4bfed50562c930892c4781566e3094
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jaeger@sha256:ba0c91112e84efd012ade10c47447b4e549d5a96c5bba91fba1083ab74c4c131