Sign inSign up
Cilium Hubble Relay

dhi.io/hubble-relay

Hubble Relay 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.20-debian-fips-dev, 1.20-debian13-fips-dev, 1.20-fips-dev, 1.20.2-debian-fips-dev, 1.20.2-debian13-fips-dev, 1.20.2-fips-dev

Index digest:

sha256:6626b5fbb1f874b57b1056513584ad8a73a62a10ec733ce6b0f2a75d2eb3a778

Manifest digest:

sha256:08efcb3fd02a39cb17fda3b1b008dcac3f9b5eec032f3788ec97b7ee8b102973

Size

63.38 MB

Last pushed

12 hours ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/hubble-relay:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/hubble-relay:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/hubble-relay@sha256:398a6e9a5d76a8a87d2227da7c2f3aa72a70410e731e39f417d5fd3078b25695
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/hubble-relay@sha256:5b2e97470a302e44799fc71cd5360cc2dc9c5c501312aae0440d03f874b79eb2
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/hubble-relay@sha256:74b0716e979fcd27466bee6409bda3afd9aab2814b5edc99f2059dcfbdd41f86
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/hubble-relay@sha256:e7b4070ad06c1a278003228c26a4527235a014f32886413ab6f0481e999eecc3
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/hubble-relay@sha256:2dc53e198f489017442f0b0a867b3294d8952f686a255b0cfcb6e9faf4de5492
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/hubble-relay@sha256:23e0d4a261b84ca1b9092cc1af9b4a1dea805a41e5a116765dbf30877071f6b0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/hubble-relay@sha256:859a2798f195a6234a80a3f1f611984c7d98f7c2e8d79cec59923184577f26e5
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/hubble-relay@sha256:9f64e0e5c06ad0dd6bf2bfef3e16e106fcf009966b0d6ad79f26b9eee92ecc90
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/hubble-relay@sha256:5f9db647ae63a763193ca88eacc3cffc8243842d10a27c2d33cdbc86c8e9c617
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/hubble-relay@sha256:21fc1d795816099832e4f3597761fc0c33b0a071925d42d921fd3cdd1347abde
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/hubble-relay@sha256:2ff972d97aa29e9131ff1fa9455c32d57bb04fb14899b618bcd3bbff40d7aee6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/hubble-relay@sha256:3c6c180a587052ee28e3a64c5371bb48547b7da982afff1117afdbb2be80a711
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/hubble-relay@sha256:8c30d2e08d2ba3f77147d83283afffa6c771409f98faff2084397b2489b96348
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/hubble-relay@sha256:53a1fa25bcf584a753fbb3e3db566090f7aaf7cb938a763dbd446e7e8e148dd5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/hubble-relay@sha256:70162cf263b589e1dcc9ffd4f5a2bb8cf17b048c4bbd25fcdb8556673fef76b5
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/hubble-relay@sha256:a72276433d0eadb882631147546fdfc9d3ce0cf3b5ac17cb70932a7bd67a0990
SPDX SBOMhttps://spdx.dev/Documentdhi.io/hubble-relay@sha256:68734037c8cd8120b103f6fcb31d143e0ffa0f071b6543d7366f4db7fa66b75a