Sign inSign up
Cilium

dhi.io/cilium

Cilium 1.20.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.20, 1.20-debian, 1.20-debian13, 1.20.2, 1.20.2-debian, 1.20.2-debian13

Index digest:

sha256:5daf2b6edb9234df93d093227dadf8ddc19f4fb7b92edcaa7f9d703018b947d7

Manifest digest:

sha256:dd7c571d1b440ca8f959f48c57921929293980b4d2e13bd2dbb7b9d79e7dd277

Size

213.06 MB

Last pushed

10 hours ago

Vulnerabilities

2
8
0
1
4

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cilium:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cilium:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cilium@sha256:8ac742f1106538acc974a8be1abda72c3cb8810b457dc85e9031b5f6aae23d3f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cilium@sha256:53f40820a542ddd490aa5cb4e543266b7670d56205fe967bdd71cea5e52551c1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cilium@sha256:3441843b19801e099b534f8a69bb8a9c548c202e89225327e815f4bfcb13ca34
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cilium@sha256:f7dc5873feadaefeef24248bacfadfd4cc29df5cc5618de004ddd69f9c4ac599
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cilium@sha256:d42377efcc84c83810415c5f624995ae9fa8687dc876da25bf71f159862f98c2
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cilium@sha256:c640c4b46f0a6b08feb548411b1ad322572e1cc5cf542f63d9edc4bff4376f8a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cilium@sha256:322e46cf1a1cce1e839731eb74e24add84db7fd8f5b09c3d4b1a4603dbb75963
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cilium@sha256:45f1d291642ec18443d3d592db54aedef114bb8f73266a44f25f462c5b21e775
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cilium@sha256:9396b5226cad9602c9c8bb37b941a00eb46d443178410af40a3f8f41c095c0f1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cilium@sha256:7499147ac5001adac9ce6f28cbf7d456b9e469aeb0356e16d62734e3b6c5c167
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cilium@sha256:f33ec3c1063ff41cb349e7872d571f08750a49c14ef17861cc7fe24c16fba8d1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cilium@sha256:6e410504e6f04a9246144eefc5e2fb9c71e604b6ee1d25bdf2eaddb4d7ce2b7f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cilium@sha256:a9752e2ec13344f9cf861c212ca137e655d60b486e1677d8a7f7e82a10373974
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cilium@sha256:7ee3fcac3db34d8e66e8e62dc59b67f12b3cca8fa389ea75211a3168fb137f3b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cilium@sha256:131c19287c88b67dabc2fc46925bc659edfc9f6f462f5907161130d1b33bcc58