Sign inSign up
Cilium Hubble Proto

dhi.io/hubble-proto

Hubble Proto 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.19-debian-dev, 1.19-debian13-dev, 1.19-dev, 1.19.8-debian-dev, 1.19.8-debian13-dev, 1.19.8-dev

Index digest:

sha256:a6f313c688103d2d0297c2a4e834ad3c2c4c0c68a2d2621e677f6fe9194ba872

Manifest digest:

sha256:1e4770989fd137529a7761b2208ff9b80d61ac4dfbd4e8d579944e1731a89287

Size

38.41 MB

Last pushed

12 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/hubble-proto:1.19-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/hubble-proto:1.19-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/hubble-proto@sha256:99b5fcc79ffa24fce08290faf9ef307cb87a57c77ec3c26423e3eef3daee112a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/hubble-proto@sha256:25ec2f58329a35d15758467f36b8c312b19bc5eaaeddec8460ffeee3058d997c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/hubble-proto@sha256:d5ef292fd1b58176ea49494bc25e41590d8905224935b20a756462db71cc3e20
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/hubble-proto@sha256:a2896ec7687b865ad05e6e36d72de8fe9d4e11430d42eb00e79ed27c0b3b6307
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/hubble-proto@sha256:82f3f83583bcb7181834490d95500860024e739a5dc7c4117ebc3e0baa7ad4a4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/hubble-proto@sha256:0286ff260b97784967e2bc0a1654c60dc569dd208eff25520b30a6a02805d519
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/hubble-proto@sha256:f21df290abcdbddb56ebc544e1bc995c483f41b1ccf5b556ba442826c9780d72
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/hubble-proto@sha256:37afe22f06e0dbd8415a8b6870d6f460d0561b2e0137b19ac88f689e11dcbe4c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/hubble-proto@sha256:b24dfe7d80ed788296e6e770974e0f414e1cae3e915d6442a1e9c9fbd7e18171
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/hubble-proto@sha256:2e6f97abcaa05e1f86f01fab9640195a81dada2ab822fd1b757e9325aa0f763c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/hubble-proto@sha256:2a842eea34fa507f6b8cd0390624c68fdb46d65f2b15ad46df7527589f645f59
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/hubble-proto@sha256:7013f8d6ed166eec3ba9da5c7c8964ca9b074859515c53e604eb6bc3bde183b1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/hubble-proto@sha256:146431c01503c9f33ed894c3f4241315b8f9517267ed9ca149ee7f12d7d2e68e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/hubble-proto@sha256:bc90459dd4438d78ae24ea31bb3318f4ae5159ac30d4702af5ccd61387cb6ad8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/hubble-proto@sha256:62916a384d6b6a7adb1ab337947bcb49d5ac424eb28f2d35865baaeadef420b3