Sign inSign up
Grafana Beyla

dhi.io/beyla

Grafana Beyla 3.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.36-debian-fips-dev, 3.36-debian13-fips-dev, 3.36-fips-dev, 3.36.0-debian-fips-dev, 3.36.0-debian13-fips-dev, 3.36.0-fips-dev

Index digest:

sha256:75054843bb19e37467e87b27787ff9a79d4281b407255fa2ad96198cfa6f96a7

Manifest digest:

sha256:8927dc57bfba051e4da7458eca9477b579408e271921ad8adfc97b2be253a22c

Size

71.43 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/beyla:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/beyla:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/beyla@sha256:840746b3c0bf387f1841fc80fd43bc5da2318d041cb1be5812c07cfc1a04503f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/beyla@sha256:736c923e0db76525e7e695991d92e6ff27ff564005642bda90af1937913b723a
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/beyla@sha256:7e951948736786682279b7af4e87fd04e2e51aead8592acb8622b8be7f8b3687
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/beyla@sha256:9fa04b8774d8e7a28036a828f0956bc43057ae6d656b7ed843e47111dab5bf5f
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/beyla@sha256:93d14ddbd4230bd568d95301728aafb312d3bf0f28ebf33a8bba89797f4fd266
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/beyla@sha256:e93c42fdbd615a0d85fe7fb7f6a695f2a36edf81ea6e602e6148fe8609bd5f60
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/beyla@sha256:e94bb9f4d0df2948e3160949980b24a3320c82205f7a71653c7a44307386b092
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/beyla@sha256:0200e7773020ed305ebc151ebcd6cf912c33e7b04bb0bb4fbe5065232b4a3de8
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/beyla@sha256:e4f8a833cd3143bc62e1e3bc4844b7608c21eec3b01255854a353c8304754b44
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/beyla@sha256:2348bbd37027094e59c4e4ad94e845efae13d45c4467d8fbeab07877f2674a9b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/beyla@sha256:4a8c3640a0a32bb1dd3a5ada221576ccdb134d2619eaaa18930e42643a4eb33c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/beyla@sha256:69b90ea247be240f67889f697a763dcc5918d25e4b29cea002f4b724ada77668
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/beyla@sha256:19f63de3de606d7926bda89631a547e08e6f043a0283766f41b6bfd920edd761
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/beyla@sha256:76cd918c9541c950ebde68c4cc5c141eb4c9e538fe7bea83966ccc2e00eab0aa
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/beyla@sha256:cf546b4e9a55f92c8301e7a3540fab80b7e09536fa37469c914a293e9797bc41
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/beyla@sha256:4243094ea41963cb89031fab7868dca2dcdcb21939ca8f44ee712787e0249969
SPDX SBOMhttps://spdx.dev/Documentdhi.io/beyla@sha256:c92946176a14ccf2e57faf441f586b356164f438feab1774d79e06b6e91b6f11