dhi.io/ztunnel
1.29-debian-fips-dev, 1.29-debian13-fips-dev, 1.29-fips-dev, 1.29.7-debian-fips-dev, 1.29.7-debian13-fips-dev, 1.29.7-fips-dev
sha256:3833b384afd882d90a6bd5cf24ee42bf9430c24605aed2ba50f75cabcc24058d
Manifest digest:sha256:2d39fc0da7f47a8862c58afac14778de4d46fbb91af40a8acc7a72f71e2790d0
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/ztunnel:1.29-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/ztunnel:1.29-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/ztunnel@sha256:78fe51eff3bbb43939ff6694197f09bdd1e5da96519a8d85f3feb90f7e04d247 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/ztunnel@sha256:eb865bc82ef91b4bf48184240eadfa40e17b8c86b1da5ec034a01240f465df28 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/ztunnel@sha256:0529f06e6cbd81e185eef071da1084a0db5676af92ac0dbff6b9bed94908f695 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/ztunnel@sha256:2c68e082da13f66ac0c3eddd461dcdc0076d98e0a79c85dc8db6d2538f61efbe |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/ztunnel@sha256:46a0295466470da2ff9bc63ddee3645afeba0f4516ca844bd202f537054aad97 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/ztunnel@sha256:1f204dcc87a014d792b18f46cca49e0cdeb8f65058add860d7cb4c1559e644b7 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/ztunnel@sha256:a060c7d4bda7916d62c43bb97680c21d9779e9185e89d9f6ae0d24da28e29840 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/ztunnel@sha256:c61d7fa1ab97260061e8d6ca7753979e2694243dea68b67b6bce05ddc1c40fcc |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/ztunnel@sha256:5b6b87951dc8c1c4dba26911a99338d66e3a518616a7334991c4a5241a34164b |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/ztunnel@sha256:0a1b98d6eb7efd040cffcbe8dbcb7697987f5e9a43471248d026dc8f6f60eca7 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/ztunnel@sha256:aa93ea602fc77bb87ee1d126d02dc051b878b8f154150f71ad4c34c10b48700c |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/ztunnel@sha256:86314abc993c5756c6ac4a9ee30d4ac84c8f6ce5b9dd8f7ec0c6c0613ba977d3 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/ztunnel@sha256:bb958b9571a53e1a2cdbed119f97966bc23980ecfea78017cd5d8eacd888cb4f |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/ztunnel@sha256:81115d9069c3918d123aee5939fac84d5987175a505038d925c7f39593dc093c |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/ztunnel@sha256:20b1ac83f1af0e217d24f7266efe50a2956400c2417e16b57347e58ffbb3c862 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/ztunnel@sha256:ade3a25d8d546d5756af3412881e4ba6bc4ebaaec7b5c12f6995afdab77a28f2 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/ztunnel@sha256:5f6439713aff6e0cd18bbfd8740a24511cf5ea4e68d7f76ac26e684b24a82730 |