Sign inSign up
Istio Ztunnel

dhi.io/ztunnel

Istio Ztunnel 1.31.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.31-debian-dev, 1.31-debian13-dev, 1.31-dev, 1.31.1-debian-dev, 1.31.1-debian13-dev, 1.31.1-dev

Index digest:

sha256:4873d74d8e65407cd8c4f11da309d1b85c204882db11e359770be20109283592

Manifest digest:

sha256:3a91bb9d3eb104440436ddb04d0fe56603b2ae0105623f139cdf0088e7273c32

Size

29.14 MB

Last pushed

2 days ago

Vulnerabilities

0
0
2
2
6

Support

Active until Feb 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ztunnel:1.31-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ztunnel:1.31-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ztunnel@sha256:41427357262dcb65e2fed69e49188f8dca002e672bfc7ab7f05b2c8a547c7000
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ztunnel@sha256:ec1cda51870cc483566c77235210cedbd24477fec1e5739aa820db5bab69b85d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ztunnel@sha256:cc393458afecf867dc5e575f754a472d9f5eb25cbaa9b7687b6d99615d6ee7f3
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ztunnel@sha256:cb0e92744cead16ae6c14dd9b288cc007bf6130e7192b4cb90934aa828752a35
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ztunnel@sha256:52f7f4a9d2f8766b820c298d568e71e913ea4fe8b2d4d15fab285ab6315b6fa4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ztunnel@sha256:b85c933738399ef8339cdcff80bd473f3812711426d5d127c05b57bc516378e1
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ztunnel@sha256:435c554981c71d5c0c551964bdbffe4bcfa797d0a318de0674f19dd8d4c6ded1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ztunnel@sha256:14b5cd96e44e8e5a43e0b06db530c718153823170d8436be4d75d11447f33bbb
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ztunnel@sha256:19a4a9442629d01091fddf75725a6851921526b294bf927d5e140450cdfc524f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ztunnel@sha256:c5686683e22a89cfc76b967dd8419d2324c2c440675436f44401d7621a77c651
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ztunnel@sha256:675af8e18ec3df5b2d9016277ae1f0e9ec0124809432c8df79a9baf82efd9f07
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ztunnel@sha256:aaf663b2c23122392e95d060a416b82f648f2916ca7b0217da4e4cf7e16fce0f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ztunnel@sha256:50c5980cdf9aef6d2ca231a03635bf1d3e5334a22535ef6066948666c7470032
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ztunnel@sha256:77532b57a3326d15afe364755ed83173cb2559f10e7107d122039b06aff7e3c6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ztunnel@sha256:5901cc0578be771b39ccecaac7955731d1ee6901f156af9c2c14df80b16eaa50