Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.22.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

1.22-alpine-fips-dev, 1.22-alpine3.24-fips-dev, 1.22.1-alpine-fips-dev, 1.22.1-alpine3.24-fips-dev

Index digest:

sha256:eb768c1e62269dac7fae7a341e5a607bf7910dc23ea89952fbf52dee4ea7770d

Manifest digest:

sha256:11dd0d4b28679f768fd8f337221052873c96c6bea50640d06573d67a9b60d913

Size

34.20 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1.22-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1.22-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:501c7ebfb8bb47010f708e06a0969ea407b29575bf5a762f3210e4f697d0dea6
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:e2ea25f266adf13f6f278065f8a9f88181e3c96520dcfbdb048407cf03e90e0d
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/knative-webhook@sha256:9babd358376b5d3bc36b954b0fa4915bfa5b6281abc51eb8596c9460fc4531f1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:4bcbd64dc90e9e9f28871df03c0cdf9f596dfa3aa79d6bfa88b8ef6a6e45a3b9
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/knative-webhook@sha256:2cd4c40e7f844694c6a474e0a52a909acbb0d9dc9e1cc823b0fe5ebdb0dafabe
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:a8943e1e3d2d0c2ca014376540eca83d17729ec22b5f4aaa34da860a3896a71b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:329a1caec1235a174ae8496a93c5da6e719aceccaf6b86a21df2417df8736dda
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:4f569e334f3844f9aaedf0399463f095b1c609beeca64fc072bdf8ef4f5427d5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:029741288a0f982d079fbe8a76620795e7e6cd7c07a72c2655ebeed7352a5220
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:8cda758a0a133d31eb9d56ffcd6bfc02b4cee3231bc04ed50849c1eda1371c98
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:81c1b673ef8ed698588f658c841b552bba4c629224a701de93fbd8f66e985298
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:89b256973dbab89277a5b3fa62c05b53be600406365c03d8ec327a2ef2e1098d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:120adaf9897b877590976fbe7638127cb9458c21b186f73abebdb44b89cedb89
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:6d66b6ad1ee3cb96cae9e20dca90fe017a9d3da3b5850fc726fd8e487394333b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:4befa9d2a1d42e6ce20bf326a90f56bc692bcdfd103e8de98e3579e87fd39c56
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:bea5b20130373d0d3b0f13d6f414c322a8f35950d15625a797651fa77298c468