Sign inSign up
Logstash

dhi.io/logstash

Logstash 8.19.x

CIS
linux/amd64
debian 13
Tags:

8, 8-debian, 8-debian13, 8.19, 8.19-debian, 8.19-debian13, 8.19.21, 8.19.21-debian, 8.19.21-debian13

Index digest:

sha256:c6a7429829811468d2ce43dbb0f563683772f64ebfcfac5a6936f15c07cb1776

Manifest digest:

sha256:01d9b3f965eb12b4dc85c836010bca214ac962dd5d0b247d9925160e76020c69

Size

412.31 MB

Last pushed

11 hours ago

Vulnerabilities

1
1
3
0
0

Support

Active until Jul 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/logstash:8

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/logstash:8 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/logstash@sha256:895c8f173069efd2d4c0e2b517d3587a2391cfbf22f1cd5d38fe24605b015816
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/logstash@sha256:447de531d6546bd3d4276acf3a290cf0e468bd1074aef57d3985ed6396ebb95e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/logstash@sha256:a2ce943e649d9fa62d29fc038a3cc5ac41e133479d92d58b04b79daf9a5c93aa
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/logstash@sha256:3b816e9d6f9d458283ca3a99886df346968459f05595c69cd2776489cfa31399
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/logstash@sha256:98cc6eb659982bb606ef8861a04191678690fd359b7d3732e0d309291b0c8064
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/logstash@sha256:eac4a79de215f293b3c11bd23bfea0d3b1d23b7d9a83bf36c9acf72ed3345420
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/logstash@sha256:1720bda97a63492ce5087c6f9665efc7a2a1507f3d3c0967be426e53f8a1d984
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/logstash@sha256:923b7a7596f64f93b1268ba9219353de4a55640f58ee725f5b6238d99e22b6df
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/logstash@sha256:fcaa8db50fd58105f01510e180ad4bd954fc480407c2401524d6a3171dd98cc0
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/logstash@sha256:811704110384cb66572e389309f1f3dbd96b028d48ffe0bcd5f26c5b04ca5de3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/logstash@sha256:015c26e140d51400f28c5aa01b10744dd5969c3a0959d0cd08ceaeaa32ae23c3
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/logstash@sha256:476a597ad8bf33f362ac3e289060936ed586bd7562a8e65f95f9f18a0a1742e0
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/logstash@sha256:61f2f0fbb715e4b28151b44fc3900744b81c2fb6e6532ab55c73747579d73630
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/logstash@sha256:e892ab2c2360bd20945fd26a8f6b9b96674f9212af06dd3ebedcf003403b8c4c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/logstash@sha256:847d5a8c2823ab642c62bac70da47b36382572bebff59cc09fbbc94ee1789e95