Sign inSign up
Cilium Hubble Proto

dhi.io/hubble-proto

Hubble Proto 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.20-debian-dev, 1.20-debian13-dev, 1.20-dev, 1.20.2-debian-dev, 1.20.2-debian13-dev, 1.20.2-dev

Index digest:

sha256:c739604bd8fcb873d878d9e085f63205b9c5057a534393afdb5a07a7a1b62b03

Manifest digest:

sha256:0b5dac112be23d6c5ec2f43371e68716e157df2d1e2b904e2147391d802596f4

Size

38.41 MB

Last pushed

11 hours ago

Vulnerabilities

2
8
0
1
3

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/hubble-proto:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/hubble-proto:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/hubble-proto@sha256:222d0f35578dfcd37e8d0514cb4acd83f42c9f1f68a7868fa6ff465adfe79b04
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/hubble-proto@sha256:2f183bcc13a9c914be8e7390a2d08842e35f10874d845d7b521f0c145801e4a4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/hubble-proto@sha256:8d4e0753c7d9c5e6c8f74f5932f0980a0662c6ea185072fe6e15cd9f6b8e0b79
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/hubble-proto@sha256:0103ce3bedd5154c506d28b88df4c1e95c2c6f10f8ddabce5500b5399fc7936a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/hubble-proto@sha256:6080131a9659a92ae124b06a4269bb41a3b6f42c35abdff3963191dc76d7c4e7
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/hubble-proto@sha256:026cbedaefbe7c675cdb9d11b270b176b51ec9a4f0fd4929b112544b4ec9304a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/hubble-proto@sha256:c7d1a667c3e03c364df62b2fc7058ef9b0cc0215d7f06e43203444f41960baa1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/hubble-proto@sha256:b442c80120963d0cf13d375ecaff74c8a10077c2f0971ffd7dedbfb5b6f629eb
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/hubble-proto@sha256:6f50e32d95888418c1aa38a6ebeba873bf1f1e6461fb4a2948c211ed2469223a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/hubble-proto@sha256:006d9ed4bdec7d0ee2eea3b95eda04c5386f8e8678ea7bf7db609b90ee4d5bc0
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/hubble-proto@sha256:8ace1331dde5cfcd4e9de8326d75393c3da3d79e6e81fb7da16f067b462f31fa
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/hubble-proto@sha256:3e5ee1807db412f6a74f6feff69dc73d99e4bae1312da87784fcbfa380ce0ef5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/hubble-proto@sha256:910c04b679f10ab9d8ed76981d7cbd0c51e00acfd157c6b79196b09b4e58db35
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/hubble-proto@sha256:67703bbdc28983076d6edc79e67ef4a6675e6d175891503bd5b46e15e816d817
SPDX SBOMhttps://spdx.dev/Documentdhi.io/hubble-proto@sha256:53a6106709160a2341b0357a5e856b852ad195101565f84c98a015fb23e95b02