Sign inSign up
Jaeger

dhi.io/jaeger

Jaeger 2.x

CIS
linux/amd64
debian 13
Tags:

2, 2-debian, 2-debian13, 2.22, 2.22-debian, 2.22-debian13, 2.22.0, 2.22.0-debian, 2.22.0-debian13

Index digest:

sha256:4c9bd4654541643012754a13bb90b37186624e790f57b74c81a613cd3d5d6130

Manifest digest:

sha256:2ca13c9aa38a11e0d35f5f897a21f277234cfcfcae56e3e032291f6eb9c41870

Size

24.35 MB

Last pushed

2 days ago

Vulnerabilities

2
8
0
0
3

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jaeger:2

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jaeger:2 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jaeger@sha256:5a3f64733cb0ea445c9320b86c789e8f167eaa1c2e7fa98bc2eeaeea9a5c3ce0
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jaeger@sha256:164bb58cabc50bbd985601fbe1be0052c484ea79115b7dafa65f6951e2f49d09
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jaeger@sha256:8647eec2143327fe29e7f3878b4ee65af1a8125b5f7797bd58539f6649f7f0a4
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jaeger@sha256:5a8f34fa1bf95cc8df8c315ea80de68705b27e5b61c65ab6be5da7b260069b07
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jaeger@sha256:6a9e14666f331fbc6e25f028db1a22b2ab64cd2082d1a778587ac96dab16b52d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jaeger@sha256:d943bfd1bf8e1b602fd23bdcf8dfbce5f4dbc7a519fa89b6b200940b4b66605c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jaeger@sha256:d1c6de0b63b34a0f8a5c8ee6203fdf8ece321024f4922dc11d00bd00aec065ba
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jaeger@sha256:1172ffe60b478737d78b2227237b8fe2bd0bcf68aa4dba94db3242ec3a97dddb
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jaeger@sha256:313007cf5ff40563f238ea12ee002e666bd758dc9ea7eb0d88837af761c53ef6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jaeger@sha256:7e55928d143e693305c4c592ab51a190783bc3062240f9661dc68fe4ac6498ba
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jaeger@sha256:7fa605978da38c6809f8209e423beca966ebcab566c5d7ac40c6c6336c7b7a5f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jaeger@sha256:1bddb4a39af258a546974975b5fb2a6033d996a4a89d615743c31d098d2829d9
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jaeger@sha256:a9165d1f4aff62d24aa6ea08cb943761d18be4f474328b467a43bc7dcb3cf60f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jaeger@sha256:e402eef7b47fece95b5e0fe46a4860f540f8e9759a96af88acf65746132f5adc
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jaeger@sha256:7aedd06f9ab7b5eb6704643e37191a82e863d624437e3376f47da3f999fa1447