Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.22.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.22-debian-fips-dev, 1.22-debian13-fips-dev, 1.22-fips-dev, 1.22.1-debian-fips-dev, 1.22.1-debian13-fips-dev, 1.22.1-fips-dev

Index digest:

sha256:dbf059503e1f14cf827dd189ad9e23c4d3bb056bbb2a3f737dfa2f89970cc5c7

Manifest digest:

sha256:33dd6864e0f39e7de135f2ba2aaa4bd9ef437db2a91f2478ab022fd2e198bf0c

Size

53.62 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
0
2
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1.22-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1.22-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:9eed83ca0965eb724597705aa22ac423aeb131a42e1af76c89b2d96e00897936
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:66b07e39276a9c23cdb805484df87532d18bd5b246feca3853f3b670bafb6a8a
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/knative-webhook@sha256:909b295e22656810e6e41aa407057c55c4d773c9ac5bf36c3db15a443e3c4789
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:5929410c804640e4518569f89df36c49739baf14d8e9708be8bc39cb63e5b9f1
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/knative-webhook@sha256:66e5e4e11210a468ec6c2f023d0cc35eddc140c4a44aeb60d5d62e2638a8616b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:88ab267bfb473d2b744384ef8a070e03a7917baa421839299900e9a83d6c2e37
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/knative-webhook@sha256:918a1ed7a7a04532724f87f4d3997cc9ec281965bbb1abcd4ec5cafde4afb952
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:8ed30f39c367e41815efdce79b60f539bdfe25c2c28cf76966708cf433aa79e1
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:fdc3dcf2016cb626d8338fbe0fba9fa3118715ee064475785237e2d4c22bc06c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:2fd8bed194b9df535fcf1ff3ebe6e818deb2d98cd2ba558e3464304acef552b3
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:caad3c9f7d61c2c88700e457df9cdb47ed585982177a9552bf6c2f2d5aab28de
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:be96f86530d378e409c16746a2fe9eace542897a771d82f2a201fecb69c20dd2
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:63b3bb418003aa3a01b2e7dfb17dc70c7e485a2069e4b67d763fc75ba0d3d814
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:82224ed838c87e30418478d972c7f92ac692137426b141347ae54961f39a626d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:7c0bc94512292d2a8434ada674d67b916b163d965bd6f575b94a265ce0d6f829
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:c544a19c168d7c0e1743d0113ac280cf4e4d15931eef402993d965ec53f02371
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:10a385d6b51b4f0d7e1a425a7c0d1d95c5b8e98727a5c8d4c4c55155023906a9