Sign inSign up
Cilium Hubble Relay

dhi.io/hubble-relay

Hubble Relay 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.19-debian-dev, 1.19-debian13-dev, 1.19-dev, 1.19.8-debian-dev, 1.19.8-debian13-dev, 1.19.8-dev

Index digest:

sha256:e229a52e894ec014f23963577baccacc7e88bb3b51674a859dec3164b195a356

Manifest digest:

sha256:2a6d7d5e85aa7a99a39a5a2a71c36227e2aa8d65cc9bf8799d9a8b9fc3a12409

Size

61.38 MB

Last pushed

21 hours ago

Vulnerabilities

0
1
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/hubble-relay:1.19-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/hubble-relay:1.19-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/hubble-relay@sha256:f28edc9e0bad3482eac43a1baf0f3ebad54f23143d9fb4d5db79c166e9248960
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/hubble-relay@sha256:cf7aa7d92bab514f8c59ffe3f0c85d91b8c60993f7615c9721a7b40893a0c550
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/hubble-relay@sha256:6a055e8d889fe80f6f81e186e56ed880f3fc392600c96d210e184fd85879bf9e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/hubble-relay@sha256:20f61bf8cc3df78d36e906a5a2ccf32a6b46a0cb43e60bbbe4c281175602f12c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/hubble-relay@sha256:842dd2ba271633324fc004d4318b55d00371a7c148a9d22bddc5e3354942cc25
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/hubble-relay@sha256:bc9109039f6a27f51263d4da90fdc9413f5610ce7e03470146f1360d87c1fb0d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/hubble-relay@sha256:0e2abb3f3cc7a3919ee7132d1ac1650c024ca8dcd7235ffa38cad24e61d02ecc
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/hubble-relay@sha256:3e250b61281f8963aebf08b34e1d98227c7d2d44c4f0f6a66c17978dbea203f5
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/hubble-relay@sha256:f4f5b07b7483d1a38f204137827cab3324a5c5d7b2cac3a08102b3b6b8bd858b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/hubble-relay@sha256:73bd705c77aa5ac0b81f8a1bc993ca98473f49f6566b93ae111d53707ffd81b3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/hubble-relay@sha256:762589240ce1a20ece99f20b869b44293e0841036446563a700bcd331330b1f0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/hubble-relay@sha256:f1d740126ada77baabb944605b1cfe5775c7fc86dcad2601643c25648b5f3de9
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/hubble-relay@sha256:c1ea409d8340e984e055dd164c0370ad547a1df3c37cb52fa70d31341123d877
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/hubble-relay@sha256:74bbf2cd547ee7789192ae37e3fa3bfc37084dde51d5daf392bd42b74f0a187f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/hubble-relay@sha256:90db0cd198a1c73e9ed408f40c70f1309069f9e6f7222e550b9ecbda9790c0f8