Sign inSign up
Istio Ztunnel

dhi.io/ztunnel

Istio Ztunnel 1.29.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.29-debian-dev, 1.29-debian13-dev, 1.29-dev, 1.29.7-debian-dev, 1.29.7-debian13-dev, 1.29.7-dev

Index digest:

sha256:72d15524c11a63a03cfb777736583ec3059f66903ebc4b821d5b71b762086432

Manifest digest:

sha256:bf5a05768df9b7ec34caa2f8e607860fcb5f8ffa7e35a29fbfbdf8b6b40c1370

Size

27.95 MB

Last pushed

19 hours ago

Vulnerabilities

0
0
1
1
6

Support

Ends Aug 2026

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ztunnel:1.29-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ztunnel:1.29-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ztunnel@sha256:dc93124c3c0a4a8d7b730af5b5e9a04f09ee2bd8600c7554055b6ef80de9c20f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ztunnel@sha256:310fb2d17dfddb19ba033907747702b3671c9bba9b93a316bbd7348053cc40a2
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ztunnel@sha256:41ea24806c3e299f524969815db98359be15ec7bb604f8ac441f8f3872002e05
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ztunnel@sha256:b10b06a3553389225810049375c464e6c23b75097a0190479990322f2d95a99a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ztunnel@sha256:d3ada89cdb0861694954aab87ae766f46b9be0d1fb0222a81a73a10cf460b4de
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ztunnel@sha256:fcfe2439c6bc13a65fde6182425014f8bd1d0617a2214ff66d1b4d025134f01d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ztunnel@sha256:13368e078dd04b6e99557c5f9d487e89d3f41ba840a8217c71c8775fdb9653fc
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ztunnel@sha256:4667de85e841843cdaef32c5bf2db7a42eb8adcfbe24e4d900a52522e46ff520
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ztunnel@sha256:576757a7b4236b0bf2d2a8c5381d9a8db100dc117a17fb608544c6fa3db48fa7
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ztunnel@sha256:382f522de73e95bb30139e65295dbe1ffbbb6fcb741441b69d360dddad4b1797
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ztunnel@sha256:f2ea58f2376b419ac67b54007f0affefb352f7c039fa23108ccf92f7f3feaf52
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ztunnel@sha256:c8a2ca77cd32b550effddea754fecb248d50e43cf12953c9dfa409602533a273
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ztunnel@sha256:914cfc40485b9b8c6b7503abe268306b51c89130bcbbc4d897707a4ba00eb981
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ztunnel@sha256:083912f15d2977d2ff4d09adb7ca653f3791097f39deddfc43fe47c8914e475a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ztunnel@sha256:cb0e1d7a82d2dc821302906945f24a0d2bb57af2e0e89b02031b5e9c659b70ea