Sign inSign up
Jaeger

dhi.io/jaeger

Jaeger 2.x (dev)

CIS
linux/amd64
debian 13
Tags:

2-debian-dev, 2-debian13-dev, 2-dev, 2.22-debian-dev, 2.22-debian13-dev, 2.22-dev, 2.22.0-debian-dev, 2.22.0-debian13-dev, 2.22.0-dev

Index digest:

sha256:621b544cc1d913a5cee89c45893632d1f5b8f1cd76e5a2ea872f3b706e701478

Manifest digest:

sha256:62e1da9a5fd4f94fdbfa8ebfefa5cbda100bc3e5158bf8eba3aa9064059ae9de

Size

68.85 MB

Last pushed

16 hours ago

Vulnerabilities

0
0
0
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jaeger:2-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jaeger:2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jaeger@sha256:71c4e5982dba5cf6305f75cf7f5b56333222de4d03fd29e993c7d5a9bd6d2d4f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jaeger@sha256:c3f48f6070304985fd8f296fbbabefe989a34b35b478e49edb3dfe273d03c58d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jaeger@sha256:c2db8405ac8a5a95b5e9833192587f5ee550782a0221c963182f6328f97c3a49
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jaeger@sha256:edf138fae0ae5f7fc8746211e5c09d2d4fd75327fd84db084cf4b55cb2cf5f56
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jaeger@sha256:fcf67fa598737d36a6f48cdc3b2b79c9c3b91f8950f7721da64ff7a0c7e45927
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jaeger@sha256:78b0d59eeeedfa8d69c56d71ddd127a30b04137a5eab4cff47842af229283726
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jaeger@sha256:4091918d5e739bbee7923b4f37a502807afeefa0edd048c6e272d74a0a899cb1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jaeger@sha256:e65086a8d30e662bc58e184717918968d85f74dd0edbc7b992560b9c4f60954b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jaeger@sha256:f6375bcf2095d925f971851553527753cb68f787a47639461fe347b3fe792a41
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jaeger@sha256:850ba96757c5fc370015f39aaaad1a3c01e408a0f2f16c33e2a50a9a714f098d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jaeger@sha256:30c72c280b5dfd9befe4882e90a35743d4c970302e74333ede61353113db1f91
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jaeger@sha256:1991ba300514d6b7d88ca8bd710bd98d2b0e3feb0ad005faba9bbe9f8a7f4213
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jaeger@sha256:fc71c803180934530dca55feff1d5e807c7673ee0e8819b266d8565054e5019a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jaeger@sha256:eb642e313e698e30dccc03ca9319f74ca89cb8767b8b3af2e50201614257af77
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jaeger@sha256:75b1706619dea22a206d990ac0088050fbbca027aa3ceb996c6ff1082fb1cb5e