dhi.io/kyverno
1.17-debian-fips-dev, 1.17-debian13-fips-dev, 1.17-fips-dev, 1.17.2-debian-fips-dev, 1.17.2-debian13-fips-dev, 1.17.2-fips-dev
sha256:c5c0fd808627366551444a73511c6a190a509ac4e57089d79256b57c7ddd9e0a
Manifest digest:sha256:9d5b5d1342a4617fcf835b9561a902ecea87be43ee8abd7d60cd3460c9bcf7c9
Size
91.00 MB
Last pushed
7 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/kyverno:1.17-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/kyverno:1.17-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/kyverno@sha256:37c7f4b9ea7be6942a12862ee9b804f4b3842cb614db0966eaf7812a89a525bf |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/kyverno@sha256:99dc5879ced017cd6c4757dd8047b509d99284656a4fd57c40907deb9117a1f9 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/kyverno@sha256:8fcbbf82b74604f69d024f13f7c74b8df24d9863d4a6ab8f6b4aee7e9f0cef76 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/kyverno@sha256:fc12c6bd726b55c83ee46905f05ac56c32ec95b970f76b7ad51a1c74f95148e3 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/kyverno@sha256:dbb26de68ed140791e1a0dc46fa5bec39af82598ad2a6830aceb0daccd196e9c |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/kyverno@sha256:3a94cad7d37e0203bd85d651a3dcaf62bb105810d2d9e5d71501edadcf62e092 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/kyverno@sha256:53a90d3838a2cee43319d58ba0261d2447182714a8cc2a5917b674e55a1ea1b7 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/kyverno@sha256:2ce2d59cf9616a91c312a925dea50319a728fc3c87bd58512cb8da1744cd91a0 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/kyverno@sha256:fec0e99fb749b59f651fd24411ef97488bdcab51c5a95fbb2b33ccb2e61ccee0 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/kyverno@sha256:07fc8731e47f313a7bb7c4a956335175203bb3e8715ac867acd50b57210ea4cb |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/kyverno@sha256:18d4528f34bb9445d88e6cb7e1a9047578da43a10775190a20a9b42f57903c51 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/kyverno@sha256:687d23d3aed5b56567c3860ef3ceada960357b741c89694c65663c08b9e26e4e |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/kyverno@sha256:af56d3ee37eb36cb53ed6c462b12baf50410650adefbfa7d9a93c78a94e0c1c1 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/kyverno@sha256:5bde03f9255943d77dabddb31c2557e5ee501a070d588e5605ee78654015aa37 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/kyverno@sha256:8feddc7395e35b631379af88b16a67223adbc7d1a5b73594680d3ad8a491aaaa |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/kyverno@sha256:f4d58007d01e4b5e16a2d1776bed2f495e75aee927cce695ff574c5edc4c4885 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/kyverno@sha256:4d7064c752c7e66cd80bf5b06325ca78acd15a2c3bba9a5d770588d89db91b1a |