Sign inSign up
Traefik

dhi.io/traefik

Traefik 3.x

CIS
linux/amd64
debian 13
Tags:

3, 3-debian, 3-debian13, 3.7, 3.7-debian, 3.7-debian13, 3.7.13, 3.7.13-debian, 3.7.13-debian13

Index digest:

sha256:9db70c28672de7489684f490a2b45a468b88832a73dc95822710801c45ebf449

Manifest digest:

sha256:d61af079fa2fc55e27925af04ead039ad26e5478fb3758c85a07ebc31e9f9034

Size

43.13 MB

Last pushed

6 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/traefik:3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/traefik:3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/traefik@sha256:76cd0d21c4e93908ba147448ceacab074d0781d8837d5b19a78e51f79efc83c9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/traefik@sha256:29ea1a0484f104c2885bcfe8b67e97e2cf2c080d2acc61ee8fd2bb7b96c15fb9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/traefik@sha256:4458c49c30dddfce8fce9a1b7da4a81ea635ab2875a44a38e10527e34e0b4471
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/traefik@sha256:529b08d6e1f52a4cc7e7ea446d991851b3b0f510a6776114fe2c41b9bfbb19dd
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/traefik@sha256:dd1d351cc74618db5e858ab1fdaea74335869b057f15acbc79e7619fe80a255e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/traefik@sha256:2ab856fa4413804563c089571e9d2ad8c0d3ed9b78059d0615d22633652f27ee
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/traefik@sha256:67d2ca2da7a49629ced39b63170b87c2bf65b8d45bafc52332dda7c7b3314f20
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/traefik@sha256:b9b0dbd90edeca4aa98c71cc25c8c8e9d7fe5633537db8ddb59947a3c49aa991
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/traefik@sha256:fc0f14dd6976746390328ea31a6c6f4b81becb3552e9870debd7341d32189531
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/traefik@sha256:bba98a81da4bc80672102741aff431fd63cc4451660d7bb3fc665cabff344173
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/traefik@sha256:2a0d048ddcecb4e356dfb53a29f5243d9b9e5edb83bc6813438aa65e6d31e131
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/traefik@sha256:4476e5b8c1825211b189b3072cabde39146b747c59620fbfe928cd35eb222977
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/traefik@sha256:31f879b3ed8c46aa64fb683014ae22a5b99fbe9eb3bfbf03e21babba94d28e57
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/traefik@sha256:69d0a6be1baee1a55791ffd7977722b4a57a49e9c59f8511ddeef684e34e9719
SPDX SBOMhttps://spdx.dev/Documentdhi.io/traefik@sha256:edb1fe3f486b2f5f247caae7798109ba0bf29d35ed4b00edfb9844f3af867881