Sign inSign up
Istio Pilot

dhi.io/istio-pilot

Istio Pilot 1.30.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.30-debian-dev, 1.30-debian13-dev, 1.30-dev, 1.30.5-debian-dev, 1.30.5-debian13-dev, 1.30.5-dev

Index digest:

sha256:174a489b3891443fac0aee29403c2672a01d2c9c0d8e64eec3afe63980f41cca

Manifest digest:

sha256:c39e6dda59ea20ac886bebef1dcd88010371fd5dbe9a9f9109ac0e16f27d85a4

Size

79.22 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/istio-pilot:1.30-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/istio-pilot:1.30-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/istio-pilot@sha256:9aae3578ea15dc112714c36a620dafddc11f2ae16c30252c89d4b79e358d8fa7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/istio-pilot@sha256:3fe1a04db8f7c4e3ea77643f81c7e097555576919cd903bd105db507ca729b6d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/istio-pilot@sha256:7af92242510d9e8c87eb4591dd0072e5aa98fa6cd76fbb2b2d6461aa81c5d205
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/istio-pilot@sha256:6f1978d84a02c968d2f838abb311d2e8a0c431034d3ccb32b4830dce0166f0e6
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/istio-pilot@sha256:a256b6c17d6a8b299b0326b34f48209506f6cd538474324466b03cef014c327c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/istio-pilot@sha256:ecb1af62c0a76d16359fb265d251e518001d3149f47a8c850be7267a1a07114d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/istio-pilot@sha256:9dd982769f461b2960d7f78e31190e26bbb83fe018145047e1ff3361e3e754c8
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/istio-pilot@sha256:d53040f8255e4436981216bb9c3a3e08fb4951fe7c415724a787ba869e9e1711
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/istio-pilot@sha256:8a1b6a91e9321c065a146dc2613fe36da96ae61a1606932647abac1b437b6bbf
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/istio-pilot@sha256:d9a4302c9baec4cfef1b5bfa2b21a50dff7ca77260885a23cef24edd17dc1cb4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/istio-pilot@sha256:9a992d49c3fd5dd80f46f7a1128829096831ce57983f9d9c2b988ebd15634aac
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/istio-pilot@sha256:a00e4275253cea468300c641411c1d5298b9881c15f28853f230f5100e4a74ac
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/istio-pilot@sha256:ac189b19a15ab3be4578147a873eb020eb1ed9a14f027c134c0566a25af49246
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/istio-pilot@sha256:426824178516441102c62208805d2865ab801564b5e7c40a9baa86836bcf8741
SPDX SBOMhttps://spdx.dev/Documentdhi.io/istio-pilot@sha256:26f17c0a85d9f4d3b892784f65f5c8c83512b1d656c880fca83f099d79c31bcf