Sign inSign up
Jaeger Query

dhi.io/jaeger-query

Jaeger Query 2.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

2-alpine-fips-dev, 2-alpine3.24-fips-dev, 2.21-alpine-fips-dev, 2.21-alpine3.24-fips-dev, 2.21.0-alpine-fips-dev, 2.21.0-alpine3.24-fips-dev

Index digest:

sha256:62b2ef6ecfe49f357cfdfbbf3873da825b55f596b34bcba69cafff9ad2aa0c71

Manifest digest:

sha256:44d8c902da278574482ca12031dafe9be8b1d831d8b4c143ef5c7acb8cc763e4

Size

49.80 MB

Last pushed

17 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jaeger-query:2-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jaeger-query:2-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jaeger-query@sha256:746a86d8517e11b8a86cb685f276b0202f77485c19149e7391733fc96d566dcc
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jaeger-query@sha256:bad23282e6100abea225f613f28bcd361599eca662f8d12cd0369b9ca66fe8f0
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/jaeger-query@sha256:32a73924e865aebb993b0ea201e79a74a87e14e48e45296eb099c910f91ee5c6
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jaeger-query@sha256:2077ac4ad74bd6b33f7e4b33eb5a67b4b2db9645a2ed5ba147bf31863059bb8d
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/jaeger-query@sha256:ffd891e427642b721d700389ac2d67aa59d8cb8501ab8892673a00beeedb7270
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jaeger-query@sha256:40e61f5377f9a599c9b4b5779e3908118983f370d598763e3845dd8c9a459424
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jaeger-query@sha256:b085f6e782157058db1e3df81cca52b1ee290a9a1abf7b20d11dbea453d466dc
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jaeger-query@sha256:27cb1646d8f953fe4f3b5d59935f9a3d58816bbbc7aecf455ff5cfe0c43bdfe2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jaeger-query@sha256:6370619d203a77b23516c65347fe05699910a3b5bad832485a6bee7857643b80
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jaeger-query@sha256:4ad26c40d3e986735b4f5951ee24ecac5a1ef7699db60efa386e8206a2371726
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jaeger-query@sha256:ba278b8e88103e87ca5259eba7e392e9025ef8142b6ec4359ac5ecbbf5d59f02
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jaeger-query@sha256:adc10a33a12cc92a4324084e375ba9c7b37ec7c535d55a2f22ab0de8ef796490
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jaeger-query@sha256:31ede0fdcbe71813353c7d11b804cce980f763d66e31945365429f03897a2182
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jaeger-query@sha256:45e2eb365689f3c2b65f0a498e5fbfee29e892c422fcb466f1d511ac5acba4a5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jaeger-query@sha256:5cfcfa3d57f14095c46fbed79187921fac76b2d5d8c5d1a8424aec06622c4237
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jaeger-query@sha256:b5b7448b38b10e2e2fc8c5636211dc5a186d6534d0155a085fdf0985b43a19ec
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jaeger-query@sha256:d45ef1af18c9c061b62f00a68667cfc640d6095c86e5bda1b975579c8a844b06