Sign inSign up
Fluent Bit

dhi.io/fluent-bit

Fluent Bit 5.1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

5-debian-fips-dev, 5-debian13-fips-dev, 5-fips-dev, 5.1-debian-fips-dev, 5.1-debian13-fips-dev, 5.1-fips-dev, 5.1.2-debian-fips-dev, 5.1.2-debian13-fips-dev, 5.1.2-fips-dev

Index digest:

sha256:ddd3a2c4cfc1b0cae4b1fd03ca43ea12ef9b40af707e4e20c78613a5a22c1daa

Manifest digest:

sha256:1dc32aaee444c295a57d9c411f90d20de3de9894c207d2ddd364e923dc0ed348

Size

30.17 MB

Last pushed

18 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/fluent-bit:5-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/fluent-bit:5-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/fluent-bit@sha256:8cd093e517a34efb8b4bd13aa32151b7970394d2c538a675009e5702c13a0582
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/fluent-bit@sha256:1a52db362680f301e701c16a7a3aaf9a33b9a287d7ff353a179503adcb4cbcde
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/fluent-bit@sha256:a2398ad56c5b2643db737d791c73cfa9cd6773239422e55549866d615a27327a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/fluent-bit@sha256:40e8f04fd0a6dd8a0ff2b17ff796217f16545b1957d4297abe315794e1eb0dfc
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/fluent-bit@sha256:fafff23a978058627ae2ca549491bfb21036983a64ad417ddd8f1208cfa2d4f4
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/fluent-bit@sha256:950cc96722f1c08a703ea01b5b53e04a9216305294dcc29457c3c9a265b10286
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/fluent-bit@sha256:c897425378a9517cec42fc74fc872d64842e78c25397fa022c998bf5c8c30182
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/fluent-bit@sha256:7593980f0ccf2d63b27b6f9b22190b6cf1b0bfffe62d3fb4a607af61dec282d6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/fluent-bit@sha256:abda07bdc802ffff244484d52c4175a9fec0913e9f93250d46f83d3275f62ced
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/fluent-bit@sha256:124bf1879647c8efb84db55411435c8ea6e8b07deacd97a21cbe64aeef06b415
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/fluent-bit@sha256:ecb86a2d4a138c65176155cbcf1e052316712ace9e658324382a817eef448cf7
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/fluent-bit@sha256:586650fb6e661c71f4d9016677ca21ae9901d2b7276e66abf394dfb3ec2b6193
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/fluent-bit@sha256:c0334eaefdcdfe1adab2eee9bbeaa90f9909c18f6c85819f739a26ae97e7a458
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/fluent-bit@sha256:b2c214bb57a8262f99c512aa788a1d9ddb7d2cac0cd00b46897820bd55d62c6a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/fluent-bit@sha256:292fbd601d58f59d723870e89e1130c02e45fb91fd5c41f719e3c24f5ba758b9
SPDX SBOMhttps://spdx.dev/Documentdhi.io/fluent-bit@sha256:73eac34725768b0aecef21342fcc5f63fed7d8d816735c65ce493a97f3b3f239