Sign inSign up
Istio Ztunnel

dhi.io/ztunnel

Istio Ztunnel 1.30.x

CIS
linux/amd64
debian 13
Tags:

1.30, 1.30-debian, 1.30-debian13, 1.30.5, 1.30.5-debian, 1.30.5-debian13

Index digest:

sha256:bc9f6a802eda68c907e7ff9bc56e0d1706a6ec2ef5e2d57ef28450541efc6f1a

Manifest digest:

sha256:230dc8a497f37a2de65a5eb8e02260ff1db8c335bba385dd928e9558d9a385e8

Size

9.59 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
1
0
6

Support

Ends Aug 2026

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ztunnel:1.30

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ztunnel:1.30 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ztunnel@sha256:e24eaf808fd75d834c93d26f8a3637d2e376c08eff784a1c7c20b83c528f49b3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ztunnel@sha256:060a2f94d443308126cc8eb4c99344574979b87337ed2fe1ee27be720c39447f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ztunnel@sha256:65ac48291fba1763f8f5b6eb12a995c7cd5a6f1d2a43c61541891f465d9f467b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ztunnel@sha256:6075e3d0c1f1001a2aa73760c92f8c67b7838f3b02f28c08821070b1b54ceeed
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ztunnel@sha256:df27e685fcbecb80652792d1424b3769911f3754410bf44489d6424710ae5223
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ztunnel@sha256:701ad3849e93a3419513935307bbab6eca8cc764f95bf9d054ccf2b74b15e51c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ztunnel@sha256:afc51616b516685df6f8a85d2f5270e9541f34c5dc832cb8ba7904ea635ca7a3
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ztunnel@sha256:a25f5370f9bcb4f5c4dd61ec8e2f60462046b438052c8bfb71bce10f89aca9c7
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ztunnel@sha256:e4262194198eff1cc2b5a44de243788d54b7826b9c83adbca63c794b21f961c9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ztunnel@sha256:f0a666e243836fb017fd94ddc0624d071911838e302434cc6fe56b20181833bf
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ztunnel@sha256:59a84af8514978b132efc910f036aaefe33b0f7108fa6d823b8df39d59842cf8
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ztunnel@sha256:59546779ca727af8531f90d99fc10f06711cd04adb283bb0644c1b1a947727cc
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ztunnel@sha256:177f5398dea3fe7a12958b999e8129a816983d7dc1724e87ff016b51180d9ba1
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ztunnel@sha256:95a25d5e2b98b5d578d0f31a92336309bd1ea3833c39d5e0a2538ec95736ff30
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ztunnel@sha256:504a2befcc4065713dcf49313f49ebd7b1a942fc16538a770a24875711920568