Sign inSign up
Fluent Bit

dhi.io/fluent-bit

Fluent Bit 5.1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

5-debian-fips-dev, 5-debian13-fips-dev, 5-fips-dev, 5.1-debian-fips-dev, 5.1-debian13-fips-dev, 5.1-fips-dev, 5.1.2-debian-fips-dev, 5.1.2-debian13-fips-dev, 5.1.2-fips-dev

Index digest:

sha256:24ca828f987f2e213b5c03b716a2f261d2c7230df2c3aa44cd4b8f88cc20ab9f

Manifest digest:

sha256:57fbb9bee794aa60a0a4ca647c8a5e186eb5a9656cb7759b4dd8a9f2d29d8654

Size

30.17 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/fluent-bit:5-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/fluent-bit:5-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/fluent-bit@sha256:30fce4dee5b0b4720216dd07cb77355b73dc1ba2212fd3d25b8e91daabb1a328
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/fluent-bit@sha256:3a0a50f5b6964d47d9917ef3ea89e5f5f627443d546bff499546db535e8a91b8
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/fluent-bit@sha256:895eaaefa298abbc277d1eb961006f14eb9c5914320d04f7c00e9120c9b56b80
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/fluent-bit@sha256:83a13296f9c935440429530931516dbc0d44152f32ae63802764a74351fdc4ce
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/fluent-bit@sha256:638593d6b72ed79e8747b6370ea7568155fee0dd4e5200e2320503aa638bbe00
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/fluent-bit@sha256:5122bb52102b05825faaddd96d785557e5309220c3c4319390d51b8a20147bf2
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/fluent-bit@sha256:532df3b326d923a7bf4105c9b322afc334785e3c9e3da0cb0cd5adf6be99b2fd
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/fluent-bit@sha256:a1f8f00cf54fe8d409b2f852fa750536e16b9485a6e5910ea4afb5fca5be710b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/fluent-bit@sha256:7dd32e31a941c6cffe4a18a99a5582b7c49f562d3f029b907b693864d0e81007
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/fluent-bit@sha256:35240c89e9d8c83db055a7634baf3c72c3e52fd335b669392dbbdcce80123575
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/fluent-bit@sha256:5af7bd1d2b26ac7e9ea121549223c43d0ee60f43aa2d4d1f0fd6337a755a4d9f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/fluent-bit@sha256:09602b3dfcf00f84f3644791e5c2a8bddd1a011e510cea19e1a7a7152ef3de7b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/fluent-bit@sha256:0a26547d2dea5256ed1ffe42384c082b984e12c83a562b9755dde4c0f85b5784
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/fluent-bit@sha256:051ac8b989891d9071d82cbecdd37ec2d9712cbd20eff9c398411144a2f0dc1f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/fluent-bit@sha256:d73f25164d5d2dab7a6cc16261a9fd04b5fc73a2fa318ffd07715b5f0eb21a4f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/fluent-bit@sha256:5d85fc7446bb8b61754e59159f7202fb6274a28e8ad31c322d0e1399888f713d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/fluent-bit@sha256:a877828d72e2a75599c45dcead7a01679b6012510009bd932d3e3c51c21b7cd1