Sign inSign up
Logstash

dhi.io/logstash

Logstash 9.4.x

CIS
linux/amd64
debian 13
Tags:

9.4, 9.4-debian, 9.4-debian13, 9.4.7, 9.4.7-debian, 9.4.7-debian13

Index digest:

sha256:abb00f7d152a391651dafb017e23cb300da1b6ce908803d86f68344ebf7d3272

Manifest digest:

sha256:7faa7f4e545590cf68a16ab227ba9bb1fa2cfa3ec31b12bf6822b29b5ea835be

Size

413.74 MB

Last pushed

5 hours ago

Vulnerabilities

1
1
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/logstash:9.4

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/logstash:9.4 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/logstash@sha256:0b99969de7bbcbd36578bef0ad68201730efd78d56006b90e4fe6cc625e28344
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/logstash@sha256:b70c0ea92a9d52f672b2df7d66353edfce6204d7d140e64d663eb7995107d9d6
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/logstash@sha256:9a4c00c368f0d26bcb495efeec9dc6c9a4f2ff16daf0fe711dcd6183ee657a0d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/logstash@sha256:b3e7fd92f8085c2f81197f517e0053ca2ad2f276bbc83f5591d8d84f4c9516df
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/logstash@sha256:0f965bbe6257bf6ef04fbe7f958ccd915df8b5cb4f31489fe1462a705c379820
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/logstash@sha256:38d919f112cf670664d137e50c76f8054acb6cfdf50a729096effbab41c6fe14
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/logstash@sha256:75bef835c202476446cf1395af164d00e5e47d00febff628885b4f4e76c82c0e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/logstash@sha256:3076d4b6f9a5c1a363ea947bc0628c0e1e49b5928210dc37d140b73197937b62
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/logstash@sha256:0b1831b3d6107db0bfafe1b5f1c78c51b97f4c0529ccc14fec95cfdd7d3b804c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/logstash@sha256:7bf2253e94850a2859eea44156761d82da5da6b0e46dfbd95e2ba3f9400d8071
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/logstash@sha256:4d3d33d833f3afa9590e2bbaca7f903f388d78306a93ad10bd307deb0d932410
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/logstash@sha256:5689c37e95826681f95173164693b71cef1e77ff433bbb4c595aedaba62a252b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/logstash@sha256:5cbe356d18188c2fcc3313f3255d4d091824a0d3bcc3e39e32106aad595ea341
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/logstash@sha256:7815471e23aab296003530dafbf16bfeb006b687d93af81a2c9640d2fb934efd
SPDX SBOMhttps://spdx.dev/Documentdhi.io/logstash@sha256:c7cb220f8583407b3077194a49aa32ac49b76721bfb768d2f143ebe6b7d46ead