Sign inSign up
Kyverno CLI

dhi.io/kyverno-cli

Kyverno CLI 1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.19-debian-fips, 1.19-debian13-fips, 1.19-fips, 1.19.1-debian-fips, 1.19.1-debian13-fips, 1.19.1-fips

Index digest:

sha256:1b866717abe006143eb5f861dfd7914b5b0b076e05bc115cd3ea79d794dd11da

Manifest digest:

sha256:1201708d4c0591c62c0fb6eff74feff9ff19ecbf5748c166306bb63535aa8d48

Size

45.67 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
0
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kyverno-cli:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kyverno-cli:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kyverno-cli@sha256:26cf108a8fb14d1145ce5a131b8e7168eb6607bb94cddd321f0a9427a3f8cf0d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kyverno-cli@sha256:d6bca3821f3647396a2f06bcc5bd38a16e4ef6361e6813a96d2a58f822bc663f
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kyverno-cli@sha256:d71241302518641be369c38bbfef8ffb4ae8a49cdbbc01924331fd0519ad0e3d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kyverno-cli@sha256:9224dc40b455b7f79da10a317eeba66492f5c23cc0b6c46fde2f1e195f395942
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kyverno-cli@sha256:e00043c1220296dfe59ff5ed14950120e29ceecf81fda7a6120e59e003755c66
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kyverno-cli@sha256:8445e696512d9d72da38b98dbcc5c490a3deccc2b9a81a5385cb1f66313d3bce
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kyverno-cli@sha256:8787c7c28e9ed8b8c896f44d52b5fb34e716f3eeb32462ee79879486dff46b79
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kyverno-cli@sha256:ab4158eef47a47016d76bbab458a3eee4a46ee970c3c0e0c917ba0eb9d5a5636
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kyverno-cli@sha256:1e0fd7ee58b26d6e30c4c846730acb6e0ce0c5fb55b63c4b5a75ce93ebd89165
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kyverno-cli@sha256:5f66d885e32d027696a828ed2a086b4609051a168a3be8b6fe529842fa356b68
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kyverno-cli@sha256:8214ad96ff035e30ba55f2da5fc3fac37c633ad32b3b5fa37acd7685631f29d4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kyverno-cli@sha256:f13183620b95b42680cab521a4889c303880dcadcae7ff3f8c202fd9b1d5ad96
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kyverno-cli@sha256:a9c9155962cb0a12cc72515d463ecdd187cbf863b7feaad1fb7aa24be0f80785
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kyverno-cli@sha256:cb5d6d2840bbf4ea226e9c4285eea02e65bbfcccafb69d253259afa4601825c3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kyverno-cli@sha256:9e75ae4ea9515731e1666bdd69f9f6f29a806e908b68062b0b1a68302060c175
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kyverno-cli@sha256:d4bbc10c4aab6194ab2737905c9552b1f46a4bed3336c97fde9f86b6d95df1c0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kyverno-cli@sha256:e68b3df79734c4ebb3b10642fe255937283c962c4b70875e99658f4768fe48b5