Sign inSign up
Istio Ztunnel

dhi.io/ztunnel

Istio Ztunnel 1.30.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.30-debian-fips, 1.30-debian13-fips, 1.30-fips, 1.30.4-debian-fips, 1.30.4-debian13-fips, 1.30.4-fips

Index digest:

sha256:1ad0b1bd0197a54604634610b60232352894138cc489d6fcac81eeb253e3ca31

Manifest digest:

sha256:b340cdbbb92552e8754ec2496cf4eb85e95d026fdc7add5f1278bd17ee2418e5

Size

13.92 MB

Last pushed

2 days ago

Vulnerabilities

0
0
1
0
6

Support

Ends Aug 2026

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ztunnel:1.30-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ztunnel:1.30-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ztunnel@sha256:96adb1b4d191c1052b6209c62716823d03e48f5c60b30e8ec1b55d175dc50324
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ztunnel@sha256:b6ff3ac882fbf6533ece4cd2916b21f53850e6de77e391d37e4076a9d14b8680
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/ztunnel@sha256:0e11291559110a540546866574e843556c25af7d6f463d60578d5bd67d1c4ba1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ztunnel@sha256:f5a762e5170460ad2b2ec6c28f8be4f35adf015e566b3a9e42b353db0df1637a
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/ztunnel@sha256:2ddd7c7bfd53e05737771256cf5d9a2b24b83c020191cc02d302540574765180
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ztunnel@sha256:c3be0f74b8b85593e18f7753e34a0fa73ea15a617fb757392455341c44982a74
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ztunnel@sha256:114186473a25ef56b28afed07bcebcf6bcd4dc33c1c2f17637defca546417aa8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ztunnel@sha256:628bbb459eabd283270d49fcd89351b6a2be93759e168807076b8389d8a2df22
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ztunnel@sha256:beffed7b961093c8f61d390388ad756e321c74ef5af807b26e589c01690a668a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ztunnel@sha256:cb7ed0dd6fd0c08d366568a811bd2f799f16880f50a06343e92706243ff6b191
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ztunnel@sha256:bfbd39188b92337166d78de2257b16b4ea00f8b5587ba6e6d9dcf21c6733f177
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ztunnel@sha256:a4e90a732acbed0b015584e7376e990c5521f99e5b2b61cab1fc1d577255d21d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ztunnel@sha256:814cb60d5479942f062442b5a42a8f132cf3f1b18d26f5da955eda583e6cc6ac
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ztunnel@sha256:a1311d0de7d6a0a68397aa2223510f1bae9ca59e04f94a48c07e359465072b7b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ztunnel@sha256:7a747c8c5a4fdd1008037cdbdb3255f3d627dcf300df77422c3d849fb66dec1f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ztunnel@sha256:f3b2f9fb2580b1f7fadf7253f0937566117aa751307b82132ee471a8f9fbe85b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ztunnel@sha256:0fccf5d193433c3fb1df9bed48a906589f76da119476e33c8af1d5902ec08e2c