Sign inSign up
Istio Ztunnel

dhi.io/ztunnel

Istio Ztunnel 1.29.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.29-debian-dev, 1.29-debian13-dev, 1.29-dev, 1.29.7-debian-dev, 1.29.7-debian13-dev, 1.29.7-dev

Index digest:

sha256:0c153fad979bf919d3c2746a6ed40d43281110f6952ba5fbbdcd2a62e141f223

Manifest digest:

sha256:89648ea393266e341c053c933c733ceec577eb52b33298e2b504306fcd2dd737

Size

27.95 MB

Last pushed

7 hours ago

Vulnerabilities

0
0
1
2
6

Support

Ends Aug 2026

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ztunnel:1.29-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ztunnel:1.29-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ztunnel@sha256:3f4616c8fe1121baaed619e4969b43d01aea5efa7d6c38b8180d2e3869ff62da
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ztunnel@sha256:7c57e98e9b7161a09de5670b4b5bbc2b802a733885492daa0f9bfd5b47a0ce93
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ztunnel@sha256:71f8583d3f6383b06debd89e4733a48cfff52e85b97358a98994b1dfb2f2c723
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ztunnel@sha256:498f3ef751b870431c864f10cb398c03e24d3dc2c81075834a9d468bcafdc7a4
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ztunnel@sha256:6185a8cc0d7c3e9ee859fc687e00a0ff22e635477cd94b735aafe2313f7899a3
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ztunnel@sha256:d9c5a90b107b0a6eb5e4fd723d00e357448ffed12dc4d6b8792834e474dfd4b4
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ztunnel@sha256:0855461f3ad863f67dbd1a108af2db24b83e6ff7609502790f98a8f2db57dc4a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ztunnel@sha256:7effee640c494bb55fb25fcd3817fede26e52c70f03b46be7d48b0a6f30d2db0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ztunnel@sha256:702e2660d7003851675088be6ad22333b669f345dd463c3a0c56d6f3c7594f27
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ztunnel@sha256:baa9c703a1c388aaa59f9ad1873eb4fd9012b7c2a0c8a7fde568b2f9db172c87
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ztunnel@sha256:ceafe1fe302dc1a8b85b598edbbafd13bd51caf9bd67fd891d9b773eba27b528
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ztunnel@sha256:f7275dccaaee6a90920dda4732d9a29606374b052171a2119d31e79824ad9082
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ztunnel@sha256:87f35f53ebfbae501aac83f4d90f3f1cb3ef8ccefc3aac0896d657ca1cb8690c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ztunnel@sha256:569c6128c7757040b116f4bd0d555dfca269c7b70f8b2ad14e4d7b5a17297d43
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ztunnel@sha256:74c93e7ab088d977668aa95fc27e6b580d791914ec54ad8b5c2737ea09a10f40