Sign inSign up
Logstash

dhi.io/logstash

Logstash 8.19.x

CIS
linux/amd64
debian 13
Tags:

8, 8-debian, 8-debian13, 8.19, 8.19-debian, 8.19-debian13, 8.19.21, 8.19.21-debian, 8.19.21-debian13

Index digest:

sha256:9d29c65a990b7cfc62e1379e4125a9940c8fe7dcd06ed61c717ab302bf8870a3

Manifest digest:

sha256:895a5c14b7de451335fb49f1185fa59897d916a437d0bab78869df84878168e5

Size

412.31 MB

Last pushed

9 hours ago

Vulnerabilities

1
1
3
0
0

Support

Active until Jul 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/logstash:8

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/logstash:8 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/logstash@sha256:58fc56101144dccb2c6f2a835297c53e94a86440a85fce009120a457deb4c9e7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/logstash@sha256:17ba383ee48ac7e9392c2c83da4fdb0d33eef9509f701e6ca9725a82d02c3479
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/logstash@sha256:debc8a50eabe9d8a55d834d5614acbd7794389f34d740efb1767ea8bb8c6f0d7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/logstash@sha256:5d38bd644d95517598e18f409e111e514c87a409fc80c3bb248a366e01ca0ed0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/logstash@sha256:1845c7659a9e0118cb1f6e1511733f5754cb8b7c42942a3dc9af17c7233e2516
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/logstash@sha256:51fb558f7d48b7933675a5e49888d38e7799309922a3bcbe9ddae10640e7dfe2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/logstash@sha256:6345e1f702f6db8a090dfea3c546a551fd7d860f8e42dde2c1047b3fe6c12e67
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/logstash@sha256:0bf76aaa27ded5668ed71e701ce49d653f74b05f46598b608b4f85ca5b22637b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/logstash@sha256:8d290a5ca7d3d98c49612d72998bed01c01ad33eb128c2803bb356700a56a35d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/logstash@sha256:85a995b0d9c1784dda4e6875a016ac4765fdd771fe6299d49c728bcb0b07d794
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/logstash@sha256:1c2589acfd500e13637ddeec630c24d1aa7056d7f72a72244e7f0042fa9580da
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/logstash@sha256:f67282660817b8f1bb9125d8358de476ef870aedf9c292d3720bd6612e8a9416
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/logstash@sha256:e34a13b1bbfda0d9eeea2dfa5197ae748bb983963b49027c9693e8830a7f500a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/logstash@sha256:db3209d18b433538fff4dc2343c1beb6561f4f75bc5f091f054721fc5e91b094
SPDX SBOMhttps://spdx.dev/Documentdhi.io/logstash@sha256:ec9e84431ba44b50621aed5e54b25a110cac4af2639407edabe3b564395140bd