Sign inSign up
Istio Ztunnel

dhi.io/ztunnel

Istio Ztunnel 1.30.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.30-debian-dev, 1.30-debian13-dev, 1.30-dev, 1.30.4-debian-dev, 1.30.4-debian13-dev, 1.30.4-dev

Index digest:

sha256:8342e7e82dd0a364c1633e6429eacb67ad9f4846efb10b14ea855f2ef14c5730

Manifest digest:

sha256:3748b9fc6aa0fb23e7951e3c3005a8708590cacca3fd21bca8efb5532aec7c31

Size

27.96 MB

Last pushed

13 hours ago

Vulnerabilities

0
0
1
2
6

Support

Ends Aug 2026

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ztunnel:1.30-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ztunnel:1.30-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ztunnel@sha256:80174183171a9673cfa00f4f890128d57050ea6e1517d91886c78c42fd6c0fac
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ztunnel@sha256:753da65cc95de460e497ddf865200d11e2ab1821483b627719d1e68a1cf7864f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ztunnel@sha256:32198a27545d54e8de9dd24b584abb249e27a50a72c02deab0b0ff68ec8964e9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ztunnel@sha256:354d879b1b90792b22305bd219f108ced7462b8e21b63c55f0e7d04664e27b26
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ztunnel@sha256:dee8a82e2ae005e6746f5d5a83d8714679f04d898a15478031b4ba096a6c4c75
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ztunnel@sha256:dadf6e6a456274adefb3071f20d54b5c58aefc8d856304613172c3c8b5acbb70
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ztunnel@sha256:60669a71876ea2b9b367c43058eebe53aadbbd0bb8501162cc16140b17378907
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ztunnel@sha256:9f22f45d0eaeaf3ad0d1eb7cd05d571fd517fb386d51f3e0156178e7a9f80158
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ztunnel@sha256:662ba4af202071f03904cd7b372471c891bfd9487dd1881ce6886f4af3ade530
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ztunnel@sha256:44c79d673a51885a52aa2df2054b93bb1fdca078389ad4e81c2c15e7272ec612
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ztunnel@sha256:47976175759249048238acc77f8783bf80ba5eb99f6b7740c3c8ff9a18971c23
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ztunnel@sha256:e09fcdc9a34e73d116fd355c4352a4472933cff5e531d9f69564770b20ff57db
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ztunnel@sha256:45c5c4ff41f8203f03ea68016d43dd9d6b47cf1d688a85ab249e4eb53bc7313a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ztunnel@sha256:244b10b52ba9f860dfa58df3f98e85c363393c4128c7ebd4ee957dc20197afa5
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ztunnel@sha256:f8ca66f70c5a9452527d766355524de6dc396a8e8fef154e948d520ee1eac1cd