Sign inSign up
Cilium

dhi.io/cilium

Cilium 1.18.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.18-debian-dev, 1.18-debian13-dev, 1.18-dev, 1.18.14-debian-dev, 1.18.14-debian13-dev, 1.18.14-dev

Index digest:

sha256:d5557786a9cf48f9ac3bab7915901cdc8fa3426a6748822d2b4dcbbd46a0fdbf

Manifest digest:

sha256:dea3be3c1bedfb162c17d2048ff95368cb3aab7fa3a21313b85b507816791c5c

Size

319.04 MB

Last pushed

11 hours ago

Vulnerabilities

2
8
0
2
4

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cilium:1.18-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cilium:1.18-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cilium@sha256:176c4a80d62dab9a247f28308e3b09ad603a075abefd77d7e8e9c41fcc1001b8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cilium@sha256:271691cb5c03a09b252180afe7463df865830c9b518120249e90ad8ac7f5ce1c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cilium@sha256:c2c503a0471b8a5d254e747b024238d6b4e9886dd2e6b037f91aaedd39c37433
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cilium@sha256:36c92766a42bcccb73061b28f53f8ecd86127a442c33ec3b252da392151bd8cf
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cilium@sha256:1e34fdb0cc92396515c62af928866f144d70ea4a0e1f06850683686f9d2be8d2
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cilium@sha256:da0818566723ef2ff47beee758b046840d7062779b9dd4642cba810ad58fd43f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cilium@sha256:d4ef02a55aeb85e9c9d652069c744ffbd963ecf350e44a1e1d3dca1e0ad913b1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cilium@sha256:e5eea797922b84cd8510ae796ca4cfd0b7f75a4898b512439a42319dcb266196
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cilium@sha256:e5ddf5c62d4d43ae8221a83b608b76e36d76f6ae51a3169dba35101d071b7209
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cilium@sha256:3afacefbbc8598d6f046f163656b46f748aad6bc71b67c433a75c9646657785e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cilium@sha256:7bb676402c74205c20d38a070d2e45818be6f68dadfaf5801a6925fadb97afaa
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cilium@sha256:e8d4473e7117013c73b4ed1f8fa31605d9d475f8f6ce331e2e25e5cb9b0732b8
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cilium@sha256:7bf8978f6d2754b8be3d0ad9490b28c7e568c9c08a6fd6a4d8ba29e5af1eab18
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cilium@sha256:e880962f792948972eb9c16c221a71bcf8ae6acdc8c1a8a1a43c487a85845d53
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cilium@sha256:b4b8b768c3ef65596a989b9f0a08e97c1e8ff85ddb1ab7def01c326a546b8013