Sign inSign up
Cilium Hubble Relay

dhi.io/hubble-relay

Hubble Relay 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.19-debian-dev, 1.19-debian13-dev, 1.19-dev, 1.19.8-debian-dev, 1.19.8-debian13-dev, 1.19.8-dev

Index digest:

sha256:da9524c72f12ce45f3f1bc7429a78451c57047af6aa1aa477d83fe9f6881f7fa

Manifest digest:

sha256:0fbf99db30f2943b8c399b1d17a1c0cb5d88627f8a9c3ed77abc95c3dbcc0a9d

Size

61.38 MB

Last pushed

15 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/hubble-relay:1.19-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/hubble-relay:1.19-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/hubble-relay@sha256:5e19a8d1587534d92c66786d8a4c511afb436acda61fa65393f03dbd2c6b624b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/hubble-relay@sha256:7c298d2334413eca64c48d89eee88925e758cb789c89a8ff027d5c8f8d487322
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/hubble-relay@sha256:d3942964638ae8f0c3220f300ec820586b6ab76df2b7f44b73f1a9de991476c9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/hubble-relay@sha256:3009527efb2de5d121660a383c784b6bf40ea016bc0e639bd879e1b75440d974
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/hubble-relay@sha256:c23e0bbcdb39822acc52d9164edff7205b0f648f585a56f37f5ef62aa0daf9db
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/hubble-relay@sha256:6ced52d38749a8c6b45f6806fa0aec486deb85aa193fd8f6a60a0c0803e36050
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/hubble-relay@sha256:e5d84e4bbb881935e7e71cb5ddf4313d6cc90c1402962a48fc17e8cb8286ad11
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/hubble-relay@sha256:8fbed40af700a28bb7e7cfcd34350e7f3f98a9468472eb1934cdba745518a88e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/hubble-relay@sha256:cd743c5eadeba8f37e53cb242cfd28bffd7896c7473652c882060e8d1f3ee97d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/hubble-relay@sha256:d6b501a6bbb6a88c2f4330c75805a7d71fc30d8120add888ee1d3e5f33efdc28
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/hubble-relay@sha256:f4881d96b2ba4e23857cf7b041dac480d05136bb9a56954176a7ab05e2edf499
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/hubble-relay@sha256:94cf447641e278e37e331bf39d676e0bad3055829881f7110c5b58689eb35144
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/hubble-relay@sha256:11e16ac23012913f405b6666c937eed013a07df0c79fe9edcba18f83ce86175d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/hubble-relay@sha256:cec243778941dcdca48f3cb60a1e3704e4e02f74f90e571ac057d32c7ac22aed
SPDX SBOMhttps://spdx.dev/Documentdhi.io/hubble-relay@sha256:54184420745e4a7059b12c351268c5760787441efb7211a446924dab7eb892c7