Sign inSign up
Istio Ztunnel

dhi.io/ztunnel

Istio Ztunnel 1.29.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.29-debian-fips, 1.29-debian13-fips, 1.29-fips, 1.29.7-debian-fips, 1.29.7-debian13-fips, 1.29.7-fips

Index digest:

sha256:19aa2cfd791b49d6c6c1f7f50ff00ef52e477f2d0bec364d236266bb06c3e0b4

Manifest digest:

sha256:9fbbc75b63ef6bd8fae4b6eec19f46e20ad0a2a29e84657c83a19fedea8b3dc1

Size

13.90 MB

Last pushed

3 hours ago

Vulnerabilities

0
0
1
0
6

Support

Ends Aug 2026

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ztunnel:1.29-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ztunnel:1.29-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ztunnel@sha256:ff40e0608917765b359003670a68cc574dbf8f07f8f2ca2d164f13841065a972
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ztunnel@sha256:c6b65c1f49096ec57d6b9da9482173bd9c121afeca8947550ff117807758371c
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/ztunnel@sha256:49abd64d8fed8ecddfe7396efe2f5c9fa6c517fba42297baf701230dd5ce3169
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ztunnel@sha256:58ae9c4b8ad090190c1ca9a870d394d0c6a41c6d657d958cff8eef32eddff990
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/ztunnel@sha256:6eba5741b28f40676ab9dbdf9674dadd80239850d0b0ab37fe9ca6deeff45afd
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ztunnel@sha256:840373e5f93e7d4ddcabdaa30948e1679b7818492d2be96e96ddaed0a2eedabf
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ztunnel@sha256:ded0f278e8200f89a7e4add6b736dbc23273b6d2a61cf3916b0be50b00537b09
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ztunnel@sha256:7acff0ce17691ec15966816582f59592fc1fd009d7f0ba863d935035c44fde75
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ztunnel@sha256:1fbd93aa20d99d78032ecc458feb04943d6833ffeb8e79ef398073eadbfb0c66
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ztunnel@sha256:2b1d977c082bc5c1398cc44e62b1801008766397be2e3100440de03d07da2377
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ztunnel@sha256:5d3619e94f3431c4a0fe20211c7e8d860f2cd1ba99a0a32a6b00249717984a47
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ztunnel@sha256:08a2913523ea5695e0c698d96f3ddbd6a28a1a0ba8ea5f7eaed2f53c3537c866
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ztunnel@sha256:849d30a6b652e71e65e63112b087efd48022651b30fef1c438106fef3176aa74
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ztunnel@sha256:da0b9f39a0882bb4e8dccfb0a132f8992b32fc70cb45e7d20526db7b09195d84
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ztunnel@sha256:668bd6758b7e4f77d4dd53d7c8da1fe9d54e405a99b769b00981f73ca5964db3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ztunnel@sha256:6cc1900066cede7f7ad8fab8f93432d29e8a3e71eea14156ccf960c35e72295b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ztunnel@sha256:b724734df849bfc1c91fc726208423afd5a6175fe033732a0978304c76b1389d