dhi.io/jaeger-query
2-alpine-fips, 2-alpine3.24-fips, 2.21-alpine-fips, 2.21-alpine3.24-fips, 2.21.0-alpine-fips, 2.21.0-alpine3.24-fips
sha256:6308f6e2926cf1d9fd1c65673ca76130485c0e23309ae1287a747200af8cee4a
Manifest digest:sha256:629b064b7d7f3579fe6848f1c7f9dbb8b1caf24b66b0c07b280bacd9a73e6fda
Size
27.32 MB
Last pushed
2 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/jaeger-query:2-alpine-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/jaeger-query:2-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/jaeger-query@sha256:3b52449a4cd6c5aa01daafd013df8b4ebdf347b5f2201865673a56a19932aa51 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/jaeger-query@sha256:46c0cc78aae53d0c81450ef3476fbeb02432343ca44e127b5b9cc45016dcd563 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/jaeger-query@sha256:f4b9aa9789ff0c7842c173fdffdbc233dd5697a5fb6af4618bd398444008c2f8 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/jaeger-query@sha256:936653f4261eda82e8c85d53098de6192728d52dbec099726e7ba7b57e4d8114 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/jaeger-query@sha256:4e821e885b02da6b83318f80cf610ac63a1358fc04102030b64b0ce2d71456d2 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/jaeger-query@sha256:68894c74785d431b10dfa7cc5c02dc8e51d06d3e94eea15e2fefc7c4a36daa9c |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/jaeger-query@sha256:83a8a64ed10ce81e441564d9201cdb841c0e3c027fe0cdb94953ad86c2cb59d6 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/jaeger-query@sha256:d20d929022b8d0dcdb3c50c19a246d22083adead54295e0a89babbc627121488 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/jaeger-query@sha256:797408b985b151e898e167de4df5e4a4a98b0252c6c4c6dc4fc5a226ab9a1430 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/jaeger-query@sha256:2c6ba27f5147d80e6c2df64dfbfd7a7debd23c31be9ee7f3e9ae19069d0c3c0f |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/jaeger-query@sha256:5aca828b0a70dab0d9ea6f8eb49bc1cfc6429c549112bc64c1f448db52ff5f16 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/jaeger-query@sha256:eaca8cbd4a283f19444ca2a47d948c6f602d5b84f57831a0d9b6daf140e9a5b7 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/jaeger-query@sha256:832f610e649c07ca34586f70a2fb0dad1b4a4e008e66353860d7263adef1f021 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/jaeger-query@sha256:33fd21814ce6ae6e4cf44ba2477617bd9576ec450166c26717d6f55cd3d621e5 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/jaeger-query@sha256:c5fadc8563d2b5ed58abbcec46a36e32ba54db687d5dc8e6530368101cc2023a |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/jaeger-query@sha256:f90597dd93b1a27903aee6f6f17438fbc95a115918abdd1658cab5bd0690bc0c |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/jaeger-query@sha256:ef8176e77f8bdc2d971477aac2b633be1334439ee243651f83c3172c45017661 |