Sign inSign up
NGINX Ingress Controller

dhi.io/nginx-ingress

Nginx Ingress 5.x

CIS
linux/amd64
debian 13
Tags:

5, 5-debian, 5-debian13, 5.6, 5.6-debian, 5.6-debian13, 5.6.3, 5.6.3-debian, 5.6.3-debian13

Index digest:

sha256:556178fad189cbf91b6eb99ee55418d1339e2c165a6d6a64c2d682c3eb3d284f

Manifest digest:

sha256:c9e95012975e0bf553c9414712d4ede0f008cbf00d471dd769f99e1d10ecb4f5

Size

83.74 MB

Last pushed

41 minutes ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/nginx-ingress:5

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/nginx-ingress:5 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/nginx-ingress@sha256:b278ecea756eeb7d5708e4f6fed669de7c8020bf0f86d5cf20445e5bde72f896
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/nginx-ingress@sha256:ea402e0b8a28f1cc24583d6c50fd7dee969bd7bd3de53bf7158c5f5a4af152c2
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/nginx-ingress@sha256:533db8d41bee395633c7795d703a80a9f989382d591cdb79f9a1f0bb2199a263
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/nginx-ingress@sha256:df843a697dff73616582f5f4d02bfa688a222cbf2364a1decc8369a4a303da2d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/nginx-ingress@sha256:7fe46837fa4f456b0d35efe3a3c9443ee16ab0984ee4786b19c435eb9d39cf44
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/nginx-ingress@sha256:1f248217ee486ac9cc69cba83ca590cc2f0b85f6dc557b1a9c39c06d9d0581f2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/nginx-ingress@sha256:931b202540a293288f66d43d97102294c59696d89451d0318b083490601dc016
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/nginx-ingress@sha256:595186b3194e6e2b33fd15b9885140dcc26873b30aff7885297b8e717e756725
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/nginx-ingress@sha256:caf3c5a5b1a3aecdce92f4e6da721764f419c0eff46d9d155fe84b4ec8002bcf
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/nginx-ingress@sha256:36e94ca64bf2919393c8ed4894e221990c67bf553acd07180d62636a7bbdbdb2
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/nginx-ingress@sha256:7181465a14614d499a2cfe2d0189c781205c5a096650848d47a8d1997f8e6946
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/nginx-ingress@sha256:4d000c366c6a1797d9cde5a6bf8a7155d1205ae991d222d17af617480e038982
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/nginx-ingress@sha256:923d0f8f527cef5397863dc86c11acd0d486a49d1e0c92b02e180bf9b208cee1
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/nginx-ingress@sha256:bb0249c23ca1fd30e6c2119b33a1ba14da35681b1b6cba0b9e2a40d427e51884
SPDX SBOMhttps://spdx.dev/Documentdhi.io/nginx-ingress@sha256:0c18ffa23aca5b6da3ed3bfc061fc9a101f8f34410a3392a202097cdbbbf6bac