Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.22.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.22-debian-fips-dev, 1.22-debian13-fips-dev, 1.22-fips-dev, 1.22.1-debian-fips-dev, 1.22.1-debian13-fips-dev, 1.22.1-fips-dev

Index digest:

sha256:83d8781e892762217ba59b1656689c9291c0945a6cfddaf717f9f6ac7b9f352d

Manifest digest:

sha256:57114a33a4c5969a242ddf4b2556e0117ae615ee274e6b6c8c12345fdfd5000c

Size

53.62 MB

Last pushed

9 hours ago

Vulnerabilities

0
0
0
2
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1.22-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1.22-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:600cdabd8e7e7e5012833be061e4ccc04f4b0ab381feb2f3dd75da8f18d36aec
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:951ceb89f1bb0f541b3879cea0cdd7151976f07f2a5a9a1c3f38e4ec03e9a1b4
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/knative-webhook@sha256:69cd8fee978092e44692235425866f3582195c733cfca6525020b020a3bccde6
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:69f9b8a83ab9ebd040669925be845e03c5746d99cd27d878e3c42c8393db21bc
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/knative-webhook@sha256:11f4d405b4dab3e1ed15b6606b1b147979b9bd9f495445f35738542a28d3bc03
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:3d4820ca6bf8bf7594b19e7e96005d6a2b9c4e844cd985337013fd973e620ed9
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/knative-webhook@sha256:b22e851ff06b2b8e028f6767a28a050f96b11ab85ccd91dbcbfe316159ba48e8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:dce6075c9d91a9cfcd168993b2f0489892a4fd2ecf595003d79bbd1ca84166f5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:0af0b23ae99efa6e954001adc4c29e24ba9b0b86d5b4f78bc481e96d559413a2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:00193b41e03a5b00d33c0a6b11e3598ce02851781e0d4b72a467ab2f5edd7819
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:a47f5a29814bc22c0c44797cf13401dacc41cf1ef2fc811654ab9893f9333d81
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:0f39ebb98058ce92ee74d705e3454bf749a30c97daf2d66f3489b165fb4ab727
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:c1043b815dab259eb71f8600b554b66e02d547dd526c3068494a71a76810d169
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:19fd08517fcb5f0a02aba7ad74f5cd209af5dee4285f6cf52583d0223840cbae
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:4a3d599b20517b34a6e066182cd349f86facd5426c40a4a8f8db330de8f44849
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:b5e8b65286c337aaaf3152661807fa388df03132d874441626da48d95910bc4d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:908d9480c3181a217298cc56ccf12e1c4143ea7e005fde2236af55e3a7209beb