Sign inSign up
Jaeger

dhi.io/jaeger

Jaeger 2.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

2-debian-fips-dev, 2-debian13-fips-dev, 2-fips-dev, 2.21-debian-fips-dev, 2.21-debian13-fips-dev, 2.21-fips-dev, 2.21.0-debian-fips-dev, 2.21.0-debian13-fips-dev, 2.21.0-fips-dev

Index digest:

sha256:843e3314ce4afa2c4b0c8776cc71e7559c0079e29e22e510dc57e16b106ed9c6

Manifest digest:

sha256:81263681bb755a91017c68ec4e9e723c05dc1d8875b5041910499bb7d042b229

Size

69.22 MB

Last pushed

15 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jaeger:2-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jaeger:2-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jaeger@sha256:891e0b08fe30c422093daeca15e629b0c83cece04a69849238ab6c4be9a28668
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jaeger@sha256:fd266477a9fa229a2aaa0e97bb8f8777fccf1413017ad8562a6d583efbb9b03e
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/jaeger@sha256:d7906af952e7ac90779b07d1dca5cd67d200c5e4b1a8c1c5ad734d5e9c981f91
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jaeger@sha256:8906ffb91aa788313205507453fd01880994fc2293a78bfc195722d4d2d32cfb
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/jaeger@sha256:224f49ac837d4cea4e0031a9a6f21830e3e3b404bed6313d6a5ad88fa2804c9b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jaeger@sha256:84f97ca32bf7d09d2f9e20abad9ae178b12220535882f9aa3580a29f219ad513
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jaeger@sha256:367375f0dae538ed60ac7d75001e150db368857ca99e967429ac926e117d28ce
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jaeger@sha256:479249cc80164327f5a53de9dae908cb199ae03cac90fc6f923bae33813b84ef
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jaeger@sha256:4bf272887e8540e2a8162dfce3074040fbddcd550b670afb44fde6c935798193
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jaeger@sha256:5c69f1aaca09199876f1b6c2a9cfdd6cd2bee9674585cdbd61766c1c56271839
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jaeger@sha256:fc959ef2d63ba8c9cb05cdac1c8d5bc90948317032a21bd2ba5de3185a0778cf
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jaeger@sha256:c4914ca8ba101cbaabd3f384208efb43b7b4099e2c7ce6e62e3d1b2f8fa7926a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jaeger@sha256:300375a62eddecd64f575b4bf5fa5bbca14c75e7cc6e80eaa5ba3e7745c2261a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jaeger@sha256:68b51edfb1ec047708ce83ccfc84cccc581e3cf6f888e7cdec934b1b8f98d549
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jaeger@sha256:bf9359deafeb8abdb30f994fa97f513d739070860e4b4109ab896f7444acfc4b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jaeger@sha256:06781fe8cb19dc408184bfb807791f8bb047e98b66a5c421b28da994d109901a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jaeger@sha256:eddbf4a75c0ccbbcc09ddb958d92821dba27e3841a507d76524fc514f2ddfabe