Sign inSign up
Traefik

dhi.io/traefik

Traefik 3.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

3-alpine-fips, 3-alpine3.24-fips, 3.7-alpine-fips, 3.7-alpine3.24-fips, 3.7.13-alpine-fips, 3.7.13-alpine3.24-fips

Index digest:

sha256:6c8f9d9062d9bab532fd2273445d940d885d3d467f9ecfa4b3fdc65f99b90454

Manifest digest:

sha256:a01c73629c0066ae71b07935043148b2da75c37f62b65ade3faea9737b3801cc

Size

46.12 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/traefik:3-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/traefik:3-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/traefik@sha256:bd6bffded7d15ccd0a09f8f9ba8b2ac8077ff122f0cdfb5aeda5cba306d3dad1
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/traefik@sha256:22916a39336e2c6be34e17a561b1cdedbd07a3279e30cd90d91b4088f1fafc14
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/traefik@sha256:bba99e01f91d749cd3aeb2f4ecf1ab3d271c5e9a6b4e48eff4ad41852a763f58
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/traefik@sha256:1eaccd0a841355a40fcf2ecf9438dc609bb07f5a01c6bd7324bea12696920363
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/traefik@sha256:fd125f5636279e530d0094906a1b3d4cb237ec85bf3726a0d528217e867975a5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/traefik@sha256:5e99693957b7207603462a91323247349115f3672d4142f0333b013c3344e62e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/traefik@sha256:30835419f591c2c925bafc0b5f80c134981571bd9f418cf005cda7a1f4b200ce
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/traefik@sha256:e08e2b9d424ed51c7c711532f9b06ba1c48ac11fe7418a1fb60440060eff9cdd
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/traefik@sha256:b9de30478db64d195fd5d5e1fc295da6c7fcaa8f83b954feb200f56de32a65be
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/traefik@sha256:193c3db72cb115232d8732eb0ec8237c5b3b0db78a5e6562b36e8e2702e5997d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/traefik@sha256:1f79ae2f18bf80bb709f4cc6ea1bb9d7c1a9b3a75b3be0f37d77832308ddaade
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/traefik@sha256:d9c95291ccd7b65c6eda632d2ebe07d61323a1b5861dad89e33a0c04742955b0
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/traefik@sha256:6dac414b47556ff9cd6e44a712f9ce8123158ca6a21b293ca74089cdfa0d4854
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/traefik@sha256:022c4e610e6e0075998e83ae89853ed80d6c3bb63caafc27cd6a33833bf0f0f5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/traefik@sha256:0ba60c9d7dea9dac825831774a92c3ef6e56d0f46c5efe4ecff5b90d6c1b67ab
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/traefik@sha256:56b2c07e24f8fe7c2f7b5b3d285888a74e1ccb163bdea37a72195ea6aab0a09c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/traefik@sha256:cb5a05d2b9813f03938edd7f42b609908ae39acfd2a54c8426ce18b651687b10