Sign inSign up
Istio Ztunnel

dhi.io/ztunnel

Istio Ztunnel 1.29.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.29-debian-fips-dev, 1.29-debian13-fips-dev, 1.29-fips-dev, 1.29.7-debian-fips-dev, 1.29.7-debian13-fips-dev, 1.29.7-fips-dev

Index digest:

sha256:3833b384afd882d90a6bd5cf24ee42bf9430c24605aed2ba50f75cabcc24058d

Manifest digest:

sha256:2d39fc0da7f47a8862c58afac14778de4d46fbb91af40a8acc7a72f71e2790d0

Size

27.94 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
1
1
6

Support

Ends Aug 2026

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ztunnel:1.29-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ztunnel:1.29-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ztunnel@sha256:78fe51eff3bbb43939ff6694197f09bdd1e5da96519a8d85f3feb90f7e04d247
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ztunnel@sha256:eb865bc82ef91b4bf48184240eadfa40e17b8c86b1da5ec034a01240f465df28
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/ztunnel@sha256:0529f06e6cbd81e185eef071da1084a0db5676af92ac0dbff6b9bed94908f695
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ztunnel@sha256:2c68e082da13f66ac0c3eddd461dcdc0076d98e0a79c85dc8db6d2538f61efbe
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/ztunnel@sha256:46a0295466470da2ff9bc63ddee3645afeba0f4516ca844bd202f537054aad97
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ztunnel@sha256:1f204dcc87a014d792b18f46cca49e0cdeb8f65058add860d7cb4c1559e644b7
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ztunnel@sha256:a060c7d4bda7916d62c43bb97680c21d9779e9185e89d9f6ae0d24da28e29840
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ztunnel@sha256:c61d7fa1ab97260061e8d6ca7753979e2694243dea68b67b6bce05ddc1c40fcc
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ztunnel@sha256:5b6b87951dc8c1c4dba26911a99338d66e3a518616a7334991c4a5241a34164b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ztunnel@sha256:0a1b98d6eb7efd040cffcbe8dbcb7697987f5e9a43471248d026dc8f6f60eca7
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ztunnel@sha256:aa93ea602fc77bb87ee1d126d02dc051b878b8f154150f71ad4c34c10b48700c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ztunnel@sha256:86314abc993c5756c6ac4a9ee30d4ac84c8f6ce5b9dd8f7ec0c6c0613ba977d3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ztunnel@sha256:bb958b9571a53e1a2cdbed119f97966bc23980ecfea78017cd5d8eacd888cb4f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ztunnel@sha256:81115d9069c3918d123aee5939fac84d5987175a505038d925c7f39593dc093c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ztunnel@sha256:20b1ac83f1af0e217d24f7266efe50a2956400c2417e16b57347e58ffbb3c862
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ztunnel@sha256:ade3a25d8d546d5756af3412881e4ba6bc4ebaaec7b5c12f6995afdab77a28f2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ztunnel@sha256:5f6439713aff6e0cd18bbfd8740a24511cf5ea4e68d7f76ac26e684b24a82730