Sign inSign up
Jaeger Query

dhi.io/jaeger-query

Jaeger Query 2.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

2-alpine-fips-dev, 2-alpine3.24-fips-dev, 2.22-alpine-fips-dev, 2.22-alpine3.24-fips-dev, 2.22.0-alpine-fips-dev, 2.22.0-alpine3.24-fips-dev

Index digest:

sha256:7c7b06c5ffc671f4e03277e6f57697438baae6b68972d0f63dc363b8e7c14eea

Manifest digest:

sha256:fe6085477bebf5bb56e5d055e3de7391a427fbf49bc25949cd14b46b7e4a4619

Size

50.07 MB

Last pushed

3 hours ago

Vulnerabilities

0
0
0
0
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jaeger-query:2-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jaeger-query:2-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jaeger-query@sha256:ad7ab49631db960cd2347cd6dec4858c4f6dbe42a7d09cfe20341c83e384efe2
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jaeger-query@sha256:4c684e8a6299011042c481aea4b0212e67e22f39c09993c20a63baea892d8da0
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/jaeger-query@sha256:03feaac5ce1a68c3a23a92c9b819a100162e5bfb5d9c726fb2d436530dc79b0d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jaeger-query@sha256:fc51e7abd07bd8031bb23840d5f2db03937bd03c34f9887e435ecb893afefd2a
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/jaeger-query@sha256:077f3e1818623105751a14a4677cf4c117a2fe7f3831403290913917e3595429
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jaeger-query@sha256:04087ebae24bf8d42a1082edac09cf5636397cbaf2e46b08f11d591c67973d1a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jaeger-query@sha256:bc10b933b0cffc47e47dead13115585a731e2280575e3321d70176a4508c4566
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jaeger-query@sha256:7dd65fb075489c164942c50c466fbe54e5b189648a5c7bd5e6e0aa655f1c042f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jaeger-query@sha256:d42a3ffb1fa5707d668ff9c98fa426b4b0ca7247916e4949ca6c21c7bb8e4401
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jaeger-query@sha256:104cc9448c7bed66d7ea3b7a4f4b917457b2c4abc3d53741c4344ee6027b7e3e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jaeger-query@sha256:442f73141ab3589b4e9408c5026cdbdca54bf52bb883ad763e54038c3df5f8d4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jaeger-query@sha256:8f77256f13de4537808cc5c5dcb7f3b68e5da619c61cb656584e8c208ef5949b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jaeger-query@sha256:02a795a6d7e96017d1d3f06c7f7c9f5ed1cef898c4a6e575d6dd1978b39e94fb
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jaeger-query@sha256:f0f0595324fca81fba0325adfb4fa2b6a54afbd34e4c4d73de351cd1a5064322
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jaeger-query@sha256:5d32e4a485dbd78cf4a1706dfc232e82d452c2cb6bf10035e49d333468807cd6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jaeger-query@sha256:3e9a6ef9e82fda8be848aa68aceea3ab70cb3dcf3d385c382bc9f83d1f5d7769