Sign inSign up
Kyverno

dhi.io/kyverno

Kyverno 1.x

CIS
linux/amd64
debian 13
Tags:

1.17, 1.17-debian, 1.17-debian13, 1.17.2, 1.17.2-debian, 1.17.2-debian13

Index digest:

sha256:cdca8b23780c7ee7f2e96044876287a4541392db80ddad437ca1229808150e03

Manifest digest:

sha256:2476dca1b2ca726ed2b6d01a059f2f00607639dab9257685c4d09e4924066b49

Size

34.13 MB

Last pushed

6 days ago

Vulnerabilities

0
0
0
0
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kyverno:1.17

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kyverno:1.17 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kyverno@sha256:2c355354463226268240d15c32de64a2e3efc97257d03beb94fd82a4f40a3a71
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kyverno@sha256:29a44534c34c40fa28ef2d5639014a0503757a45fbd47e37eaccd99a9bb33cb9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kyverno@sha256:03aa59c869fad4744c13bcc386a71d401b4cb00d8385db5136a4dfb052fdefb1
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kyverno@sha256:6c8d36728d262d14d31645a2a35d7d4de64b632db60d0d2fb26b15a6882b5a5b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kyverno@sha256:fda6f6c6a564758bfd7cdff8e5017cd3e707e24254dca609ef1d0661a8d67f93
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kyverno@sha256:ef5db11f631551e64fe63532a59cc9647c527713f9725ee3efda5952d47760b2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kyverno@sha256:a59a291d295cfcc882b2e176b25348c2b0ef78a9142d663cf8ad3214befed637
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kyverno@sha256:1a86bec60b941f32435e79662a49e6851bc791f33660cf19e3d06fd45dc9573a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kyverno@sha256:13111c182c0b0a5eb03888829a68b03186dea6d6b7954a5a4f343ecb23425c9d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kyverno@sha256:7933e158cbf1e4436adda8e77935e711126f10a8d56a0edc30cefc2a2b714fba
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kyverno@sha256:a948afbfaaefd34109d9a8c1cbab7d849bc9afe589d38a3adc4b55d73b62b141
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kyverno@sha256:b3da0ca889fedcb5b6cfb1289afdcab8775a44febe6e347d3ea5f30917c11361
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kyverno@sha256:041be85f7e6e5e95ecffb79f2b9ff30d3a95d871c6a8e687fa4caa47c780c6f1
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kyverno@sha256:e9e4c05501fac66aac620bc68f4f45e7c461b06da5225902bff9e2e3d8f49d18
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kyverno@sha256:775125403b13ec24797286c75b7ec63641978fa1b54f5b364869975ae8746bdf