Sign inSign up
kubectl

dhi.io/kubectl

kubectl 1.34.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.34-debian-fips-dev, 1.34-debian13-fips-dev, 1.34-fips-dev, 1.34.11-debian-fips-dev, 1.34.11-debian13-fips-dev, 1.34.11-fips-dev

Index digest:

sha256:b6cb764ae82beabf3e0f61048f4809426a1b5ae6a135ad640374515ce4987616

Manifest digest:

sha256:73eb4d9c80efdd479804a93ba2af5f3ce6f50053f8e2e2a0f3a03a94a194a226

Size

84.01 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
2
0

Support

Active until Oct 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kubectl:1.34-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kubectl:1.34-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kubectl@sha256:452280b16b111da2c7150d66a5651a23cab1c2ccef6ef402404416ca76f9cfc9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kubectl@sha256:cac82e953b2ba5cde164130feae93d5b48f1c3820a8e84bc954de92d07bf9f9a
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kubectl@sha256:723e046b064742743906f05c746a5bbf8c2f12ceaa476ac725a6372976c3786e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kubectl@sha256:c40112af1fcde41256fe02c63a042107fe82d50d2b8474a0c8b3982b7f72bc38
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kubectl@sha256:96e749438340e1223a8d6cb212a46a5b38130f68ce50b25e14676161e769861e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kubectl@sha256:faf0c6c4f0153db579acfe9978e08b9d71173f8494dfbe527f982afeb38f2e06
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kubectl@sha256:1b555c0588b0b023e2c429846f894de84f9b10bad59b10904a8021a3177832b8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kubectl@sha256:5373814eb3c5134bd629fb69884bb699f31a03843cbae634d2e96da657eced94
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kubectl@sha256:50027c3c076132b17bd01ae1b8684b752fbf76935784c019a713d7005ad35965
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kubectl@sha256:161ed914ec0da7b454df06fa3d3599e0ab6bfbf14595d65df28a9b63b9a44693
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kubectl@sha256:00657d713606a6063a1eed29053803018d7a6e1194207eec9f4291287c1f8562
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kubectl@sha256:7d01747a866059b1a74e51499bea3843385203b44698a3e746a6bb469224e873
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kubectl@sha256:70a1e8e6753a8248354aa3d010c20bcec8d0227b22c5ae04594f42fec89b3220
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kubectl@sha256:516c05c77a8d4e869738074956e4e65902b41aa05eb18e76362635b32af02cfb
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kubectl@sha256:f7ff92795407b85ca03ebd9aeb2d72108c18345f77480a2429ce6f2a54e393cc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kubectl@sha256:141644aea9312fea92b64b2638041f482818c2920c77c13b328c67a1f09ca6e2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kubectl@sha256:8b6c0b9d3b6a465a52b628fd1ca00d4cb8005541ade0e736fad3ab457e45d0a2