Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.22.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.22-debian-fips, 1.22-debian13-fips, 1.22-fips, 1.22.1-debian-fips, 1.22.1-debian13-fips, 1.22.1-fips

Index digest:

sha256:f0c7feb92c36a76fcd47d21c7933430848e7ed58a49b99815014957dacb6fbc4

Manifest digest:

sha256:accd18b0ce64c27c42cb82d94adea53a6b538e76d21af6b4b9ef69de25f6963f

Size

23.02 MB

Last pushed

20 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1.22-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1.22-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:8f49ef4cdcd6a681956bf4cc1e29ef6fd099e06e0baf23e6927a4fe602f072eb
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:c0df51589dd0ac88a4ca4eeebab99d57e0ecf850927e562ee55e82f9616719ac
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/knative-webhook@sha256:2361ceacc40f6d1c36f4688abc79cf861d4dc3ad88a4c4512bc7e250edad08ac
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:484effb1ece5cf1949b92e2446165c5d8933b8fbfe186a30b0521fa401bedf45
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/knative-webhook@sha256:49c7f302a70043182f3a2a7a1d87c51c46da6d4ccfa95dd625e7abab99418085
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:6991d06faf3ac155cd5702d9c5176e9ff1c2287d060c02536b82504c352be4f0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/knative-webhook@sha256:13621570a06ec6dfd4e424aaa753213dfc3976d10caeec5cd55fa87bfd371e5b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:c9e45d038df1ed984fff00596f7bb1c270a5e254ca70038526dc7e2a5df7e159
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:cfd2bf4f66685f8984bef5166a44e416ff7e00e9d7d700081b07e2856c0c7901
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:1d5939168559b95eb16c588dad20dd3af5b1629ff36158f1091ce215e16fbbbc
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:4c042cc93f3af98d1da573891c000318024217450dff2a9fca89cd6bd568d979
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:1b3282eb7a36d915fb34a520a8122739c34111a6e210eb510ef03e2babefc395
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:a5d5489bf471ca6e1bb73c1cb764c03998398d8fb39d8aab314c20d2b608fde4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:a9099f97db45ca3a2f15553c857406b4c54b0f50795ef1373cd9d28d13520c7e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:fceed782988776a95190a21e0e63d4535328903c6a54a6b127be4c46c2195d93
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:243585de2b92ba28a862ca70e266e6aecf627a1354aeb057cecfc1a1bae2a371
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:258e4ad8d1ee22bafd53a4f15e8d95a2d3307abaeb0aed4c293dce946da022d6