Sign inSign up
Tempo Query

dhi.io/tempo-query

Tempo Query 3.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips, 3-debian13-fips, 3-fips, 3.0-debian-fips, 3.0-debian13-fips, 3.0-fips, 3.0.3-debian-fips, 3.0.3-debian13-fips, 3.0.3-fips

Index digest:

sha256:16b68371b7bcfa1f20502e0d88cd64fbd1d740b0b67a6d8e39c762fea2ac1cf3

Manifest digest:

sha256:aa6af1fb95d86aaf2801dd88f4b1ffc14059eb4d7bbc7a127a1948f0b7f6bf84

Size

15.14 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/tempo-query:3-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/tempo-query:3-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/tempo-query@sha256:a7a6ec31d428298ee9807f7612a48b8094873b80a70774624320ff4ca0f49cb2
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/tempo-query@sha256:4368e05698dd62d365193fe0192e2bb06bbc732237262424ab525714f4fdb6e5
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/tempo-query@sha256:92790b54f34b7572ee5ad3f3cbd711aa4e56d7a3e3fdc1f86f3a6992d820b699
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/tempo-query@sha256:1b25144cba6a3a89a1f59332e88723e5aa1b4fc9ce9a0d4b9e468e51e0c46b3d
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/tempo-query@sha256:a06fc9c00e75fa70ba2f0c04d22ec174df933610c95a3f9045f1de170e1f37f0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/tempo-query@sha256:1110846f83247005d752d4c5e10eaad2f072bf26c3a670decc261eab141cb6af
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/tempo-query@sha256:7bbfbee2971a774ec5ab065b1ef357fc68280d5b38274bc53ea51f713536d1a8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/tempo-query@sha256:c14fd2f1cadedbd0b025bcb6c4ee4c086c5cbc5b2640aa54db1b30d2e4560ac6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/tempo-query@sha256:5f0b9e60ce0d6afe076a0f39f19863bd3c2af13ebb0bdf456ab517ee7149877b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/tempo-query@sha256:0ba5188700fb2bbb378f7d7baa870dfae91e0425ad62ab5fd13b4020d21903f7
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/tempo-query@sha256:5d6b2aed743edaf9a522955542ebeac34ac206007c092ac40ad3013a500c3173
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/tempo-query@sha256:a947eeb4015da59fc3f91107c3062dde6d676015410e41f9abdb6dd061c04502
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/tempo-query@sha256:8021f48504f7e5be044ad474aef668c64921395950078f3f88186fe8bad479f4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/tempo-query@sha256:0e5022538a62d80daa9a465c22a621297404d36439812460fa2a3b430e8031b9
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/tempo-query@sha256:e61a061bf0ead28f7a9115b00a96b8e3474ed8c775f24740d125179761c9db85
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/tempo-query@sha256:49944b48ce39b20d5bb66a64a6e48b295254ef01d0247bb78e35a99ebecea21b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/tempo-query@sha256:38550e9f0b8c9cda4dbd8a88f3b0cb5cdf2a57464dba2a7a0459d2dc8f605d75