dhi.io/telegraf
1, 1-debian, 1-debian13, 1.40, 1.40-debian, 1.40-debian13, 1.40.1, 1.40.1-debian, 1.40.1-debian13
sha256:c1fcfd0909e54d7d51c37874a8e110735475a4ff33f2150323ca8c903771f444
Manifest digest:sha256:35bf8d6cb4d102ae94440a212ad6366a4de3425f5bd3e81c0202af576795aa46
Size
74.52 MB
Last pushed
5 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/telegraf:12. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/telegraf:1 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/telegraf@sha256:4e5e52f9701ab3a940ba81d06eb1b51da65d53b937dcf7c9b7c087a2f50cf65f |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/telegraf@sha256:07d420a17aa5b2bbf2febdcb1c46fea6e3ce4a113fa9d62331b328e411b59361 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/telegraf@sha256:0217c1888ec190ad13b307f82343a78e27f1d8adec7146a88d3db85e0152b4c1 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/telegraf@sha256:caa58552efae111bafbcfd19429396f9e27b3eaccbeb127eca82541dd8df59bf |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/telegraf@sha256:635bd38fc7457e014294306b0f7be9fc26bfcfedf046047d79b2e661696a51a9 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/telegraf@sha256:e9f26d99efa91ea4766ac41c0b714acc1b9955aa919b547a2e5809e1e5805122 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/telegraf@sha256:61f24a20add094545b5baa41d6ed9379456c127d4b0adf60ba0b739234f79b40 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/telegraf@sha256:8620807cb1b14b4adedd502dab703c8063807047dbf179f6514311c20993c392 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/telegraf@sha256:5d750399cb7adb5447ab3d2c60e7bea9b0680fb4acec205c5b156799bc4e4475 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/telegraf@sha256:d8013805994cc8d73eb72b0319d2abaa92ee6bfd17831f87a2c5bdfaa4dcb230 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/telegraf@sha256:a271391b917209428c914dd1ebe5651723e9e3c87992c92a71e56d2ade955597 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/telegraf@sha256:a98d6c693a509226e9be357a95474e0b076a128816546ff8dbe09b8f4fe3efe0 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/telegraf@sha256:dbf1f589b39646516e6e619399c7fdd9634fee3aef465c3cc72416db9a6e89af |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/telegraf@sha256:e50f04d92a0f75f5250b928e664705545b9e885e836657491fc9f54832611d60 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/telegraf@sha256:d42533d643b53c4d7b8e41181863372c3831e01ad42fdc499c9050b183753983 |