Sign inSign up
Istio Ztunnel

dhi.io/ztunnel

Istio Ztunnel 1.29.x

CIS
linux/amd64
debian 13
Tags:

1.29, 1.29-debian, 1.29-debian13, 1.29.7, 1.29.7-debian, 1.29.7-debian13

Index digest:

sha256:88861dba3f037938f9a806828f14ce9534b327eac676048889dc8bb161955d4d

Manifest digest:

sha256:6090637853820e7273b1a339a8273315c4362440f434b651350c49f36824470b

Size

9.56 MB

Last pushed

6 hours ago

Vulnerabilities

0
0
1
0
6

Support

Ends Aug 2026

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ztunnel:1.29

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ztunnel:1.29 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ztunnel@sha256:417a52b471a2c40deef60837faabb6c3c84d4613164fc85e11036c2d9ee49247
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ztunnel@sha256:e41cc7dd4e770e3774e4a71066f6dc911b21b48bf141f6d8571856ae07ff01a8
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ztunnel@sha256:b3b949ab37df5588890eaadeea8197898bc20f40b8d953f5886ac61acdd73e6c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ztunnel@sha256:37d6a2cc873a8998edd276da5e45a8c955b50ff4c9b78d2a79f4ee8686648be8
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ztunnel@sha256:c9384348dc8c232cc809f3cab741ddac52668c2dfc019a54099ec60fe2fd5eb2
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ztunnel@sha256:177edbfc96037cbd5f8d2e050703e5d61b90355bbfac964436184c47aacb2ad5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ztunnel@sha256:9c6aee3caf9a080f467a01a1d585ced65bf384db19d79d09c88062e6089b7a4d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ztunnel@sha256:60a35169afd0ad9ae7242b689dd7069c81666f7230af1fc6ff4c89fbaaeeb189
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ztunnel@sha256:c68dcb94b9a4df4ead3ae4243487a6723936a6f89c0481640032e105225f715f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ztunnel@sha256:1b1eb60711f1a120b3d75ce673d13b8f3a65b59ccf6e0dc9776ecd1c2753b4c8
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ztunnel@sha256:86e55fd80cc171cb7ef978f2286a00a42ab02e022aff582b9bb6cae777bbc609
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ztunnel@sha256:56f14d6738edf2acaba5f94ad9bdd3621c70fbe0a0f510a17eb71f2ef28f72c6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ztunnel@sha256:0794b50db61b5750b1d58f42e32aecca07fd235f90532cd0d29dec98be1de086
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ztunnel@sha256:ef25729032cdb99b23e1522425415f13a0eee3ff849c951ba73b362c9a8a82e7
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ztunnel@sha256:2323d1e6ebb4d878674d2b3f8c0523785c7df0bbcbd632a3f40da7aeaae09bb1