Sign inSign up
Kyverno

dhi.io/kyverno

Kyverno 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.17-debian-fips-dev, 1.17-debian13-fips-dev, 1.17-fips-dev, 1.17.2-debian-fips-dev, 1.17.2-debian13-fips-dev, 1.17.2-fips-dev

Index digest:

sha256:a496460a442a536937d8aef932002f512e825b5d0fa29aa78fb78b2f912399e8

Manifest digest:

sha256:c2d02e88097728894226e4512f6aa9f7d7c42997afef4600c899b85e5e717033

Size

91.00 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kyverno:1.17-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kyverno:1.17-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kyverno@sha256:1a8936ffb848d967106ec2ea4cf6efcf7ec17679bbf877d4fc21800c387f9538
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kyverno@sha256:4d27334e18c1f3e6738fd52a20db8f13b94d3e77ce8edb162789597c9726a543
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kyverno@sha256:793b201b2d89daa00f5ecb1adaf952095effe9e960b831cef6ac7c9353717448
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kyverno@sha256:92825e90f47895ac32fe396fdb0c179479f9c0658bad24935a670ffb55bcb214
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kyverno@sha256:0f909f7577ec26056bab83d797ea846c43a5532d97b339e28aeaf14feaa5012e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kyverno@sha256:5f2c95d4fbe4de0e976a0fba8a1d2765a1b77f6bc0359fceec53de04521ba3b5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kyverno@sha256:d54306728b1f556188d64b64dc1abd54ff2310d1db10195833aef66c289dd76c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kyverno@sha256:7498a6abd8a44c48a072ec78788655d4bb3348f7514995b37483ea4b0f6be796
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kyverno@sha256:0676701ba17f908116a0c916339dfbbfbcbc03396711f3a5cbac2527ceac9b83
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kyverno@sha256:d62106bde9f60a564e5f06eda25f94dee660826ebf8074aa75586ff0a8b53f0d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kyverno@sha256:5f2e5855e15ba216a6d2718d713b3ef340efdbf907d1f1c5263fe97e6cea9cf4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kyverno@sha256:05309daf4fae585d7c6ffa6777c6c7d9f98635449817c0fe086df5e9a2a6e499
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kyverno@sha256:fa0b32e596dfb0b0063818caad7431fdfbc12b06e739f12cff723cfd8e327e87
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kyverno@sha256:872115bc7b08a5ffea83f117176d98b0a29956ab9d92505da1d3c7958d72ef5e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kyverno@sha256:c067ce158c79dcfd93fa05edf615ee71aa2c8964447e89938fb91518861d18fb
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kyverno@sha256:852f07a73bd5cb0fa7c7a2d22de4d8a007a01aa864be731c41435eb8929627db
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kyverno@sha256:6c741ede60c2329065bdb604e029b54d1863ca4aa4eeb55e6bdb74dce2b29191