Sign inSign up
ktls-utils

dhi.io/ktls-utils

ktls-utils 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.4-debian-dev, 1.4-debian13-dev, 1.4-dev, 1.4.0-debian-dev, 1.4.0-debian13-dev, 1.4.0-dev

Index digest:

sha256:d315758309912b794649e9bb696716077171e1a8b8b14d84f0dd8e848b41e738

Manifest digest:

sha256:875e7fdab7e2345bb41557d536c5c4099becf651f333dc3612303542aacc0d13

Size

27.30 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ktls-utils:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ktls-utils:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ktls-utils@sha256:224405f3351e99b0ba8b8ce88c5a0282d635dc3a7e998356cfce8b57a70b0596
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ktls-utils@sha256:704a2f3d890d82304967db07c394bb60a46c3836f25913232410172da052f72f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ktls-utils@sha256:bc7a7f9fcefa457981e5e592f1fd2ec29e4ed6ffde91f0a81d1fed988638d19c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ktls-utils@sha256:b8c64a2c4ae9550bee97aed48fa36d85c580c90b42b406966f7db041e5753e3d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ktls-utils@sha256:306dbdb787bf5beb23e7dc25a2d639a12ed3e96749119e332103d691feed5249
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ktls-utils@sha256:4486570b0ca9e19519d2e4f77158d38f93e07c6346af3b7dd442f3ebdb9800ce
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ktls-utils@sha256:80f17749b282a5f487ee2960b5b3a40573b9d76d25a42f31965530b4ad1d2529
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ktls-utils@sha256:a85c8b26c249d74ac2fb70f4e74d5ec4c926b702adff1aa6b2d242a1ab5669f7
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ktls-utils@sha256:fa5a4c3d4fcc8c459b56ddebee8395ad22e50df3291cdcafad0213c7cc0ca21c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ktls-utils@sha256:f9ec7d077551d80f592b8b582f9f1369b5d07df01bee2e89161726c695d4cbe2
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ktls-utils@sha256:bfe749cbe6e176ac22ce92a08d95de50008e6790779e6e3e7c8964f3daf9793e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ktls-utils@sha256:4b980564bf17ecba164571cdbc664e337594b957b2d12fbd575531e0f54b1c03
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ktls-utils@sha256:5de24ea1c539c6c060727788750ca62e596ad5d93ff34e90c1dd38132f41d0ac
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ktls-utils@sha256:0086a9325739817d0fad281ce559908b22281ee28180ebc35f8e8e80d38d0de4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ktls-utils@sha256:52280f71aef8c81173f570c5210437e9b90c635d9b574b02a4177dbd9ae05fc8