Sign inSign up
Telegraf

dhi.io/telegraf

Telegraf 1.40.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.40, 1.40-debian, 1.40-debian13, 1.40.1, 1.40.1-debian, 1.40.1-debian13

Index digest:

sha256:c1fcfd0909e54d7d51c37874a8e110735475a4ff33f2150323ca8c903771f444

Manifest digest:

sha256:35bf8d6cb4d102ae94440a212ad6366a4de3425f5bd3e81c0202af576795aa46

Size

74.52 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/telegraf:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/telegraf:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/telegraf@sha256:4e5e52f9701ab3a940ba81d06eb1b51da65d53b937dcf7c9b7c087a2f50cf65f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/telegraf@sha256:07d420a17aa5b2bbf2febdcb1c46fea6e3ce4a113fa9d62331b328e411b59361
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/telegraf@sha256:0217c1888ec190ad13b307f82343a78e27f1d8adec7146a88d3db85e0152b4c1
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/telegraf@sha256:caa58552efae111bafbcfd19429396f9e27b3eaccbeb127eca82541dd8df59bf
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/telegraf@sha256:635bd38fc7457e014294306b0f7be9fc26bfcfedf046047d79b2e661696a51a9
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/telegraf@sha256:e9f26d99efa91ea4766ac41c0b714acc1b9955aa919b547a2e5809e1e5805122
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/telegraf@sha256:61f24a20add094545b5baa41d6ed9379456c127d4b0adf60ba0b739234f79b40
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/telegraf@sha256:8620807cb1b14b4adedd502dab703c8063807047dbf179f6514311c20993c392
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/telegraf@sha256:5d750399cb7adb5447ab3d2c60e7bea9b0680fb4acec205c5b156799bc4e4475
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/telegraf@sha256:d8013805994cc8d73eb72b0319d2abaa92ee6bfd17831f87a2c5bdfaa4dcb230
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/telegraf@sha256:a271391b917209428c914dd1ebe5651723e9e3c87992c92a71e56d2ade955597
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/telegraf@sha256:a98d6c693a509226e9be357a95474e0b076a128816546ff8dbe09b8f4fe3efe0
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/telegraf@sha256:dbf1f589b39646516e6e619399c7fdd9634fee3aef465c3cc72416db9a6e89af
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/telegraf@sha256:e50f04d92a0f75f5250b928e664705545b9e885e836657491fc9f54832611d60
SPDX SBOMhttps://spdx.dev/Documentdhi.io/telegraf@sha256:d42533d643b53c4d7b8e41181863372c3831e01ad42fdc499c9050b183753983