Sign inSign up
Fluent Bit

dhi.io/fluent-bit

Fluent Bit 5.1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

5-debian-fips, 5-debian13-fips, 5-fips, 5.1-debian-fips, 5.1-debian13-fips, 5.1-fips, 5.1.2-debian-fips, 5.1.2-debian13-fips, 5.1.2-fips

Index digest:

sha256:65e5dec5029df83d5a225e20711734dbb11f6ae0a8166d8f2794ea7f3315d4d1

Manifest digest:

sha256:37f3ff5c48f953994e72bfc28467b8aeb53f564efbf5686c6fbcc8edf37a06c4

Size

17.30 MB

Last pushed

8 hours ago

Vulnerabilities

0
1
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/fluent-bit:5-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/fluent-bit:5-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/fluent-bit@sha256:ab7bed5d0dfd4efa6d28860932b3ea382c0c0af60c8d057820ca0a1c2a9e2270
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/fluent-bit@sha256:4376723180ebb10891d4003966aab9564d5cb0c47b0352e3f1140ecd56115e5e
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/fluent-bit@sha256:5304ca6485ca523a0f1a46f230c0dd0b1f25321478bd5920465c861368b94968
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/fluent-bit@sha256:961708e53cc5824023d4c7f6c106e4e0770f5bde74b76c55743c40f1b7019ef8
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/fluent-bit@sha256:076d25959e90f42ee3da457806bb763844372410e4b63352e911b0e160e1cca7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/fluent-bit@sha256:9113c4a7af3425079f4a725c6ac9aa338c3b1f78c29e55f476cd17207d9ccc9d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/fluent-bit@sha256:64ae0f86048e103b2181df73d00744ef1636306f1589bb9c998311dd3ecd6572
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/fluent-bit@sha256:ab5c83782241b9e6905b8810bdf0fe859b958f0925cecfaf94c1c4b0ef3c34cd
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/fluent-bit@sha256:1f7b3d30ddf1198b9170e91a1c9e0242043df5a2c04ae9c3c911072f55edf032
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/fluent-bit@sha256:fa3ee6faf5b9f84b7a7dc3b59b9c0907c8f64e957eba782baf71e55620e10bc8
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/fluent-bit@sha256:547cb22ba6c783eb55fda5f65c071fcee1aebdc094ecd9bd9d19d60704bad851
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/fluent-bit@sha256:c09985acad52f7ccf3128bf932937825af84a7723910176f3426044d69f1796b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/fluent-bit@sha256:702fe5f208dc53c253527b7d39cd0743312174ee625028622362a149bde6764b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/fluent-bit@sha256:942cb5092557b3dab3fa24df62ceacb8656ef052b52be64740f70c441e7e82ba
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/fluent-bit@sha256:5144c9e7e51775d11ab175524643da82e4c32afe7df94245e90a63bc7f7a629d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/fluent-bit@sha256:2bdf0d3e2b2829c5e97b563972cac708afc0fb6c636e418a2ad2c7ca164b055a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/fluent-bit@sha256:369c35961a2d0b753bdcce6d0c27062458ac5f12ac805ac460c4066384ae0339