Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.22.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.22-debian-fips-dev, 1.22-debian13-fips-dev, 1.22-fips-dev, 1.22.1-debian-fips-dev, 1.22.1-debian13-fips-dev, 1.22.1-fips-dev

Index digest:

sha256:7e952a0d1d8e28faaa89527c5ea8254a347ff47ae66b59d8d77d0abd1839522b

Manifest digest:

sha256:8c762f882c9da4a205804239b1881d177e7aa640745304fbd461a8ef66a100b7

Size

53.64 MB

Last pushed

9 hours ago

Vulnerabilities

0
0
0
3
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1.22-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1.22-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:48e9d5d501e5d55ced861db1822c922a2cb4786bfbe8a9c35cdc1cdc1c3bb347
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:a9c5dbfc7a613bf4ec2bbad4cb12ff5290ae00619bdaced0e3f53f8c9c88ba59
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/knative-webhook@sha256:d1355245b6fcac48a0d062e10500eab1daa382c6701b9c2e8065254aa2b239fe
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:d1be3ca1c22a06193cd624473d69205d7093f9181a162733c68d70df3edc0dae
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/knative-webhook@sha256:e5e9c871f19d6a1501bb215d34b7769f6bb020310f5dee928aa8276df60057f8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:7f2f382c05c5f9bae5d2bdc7c8f1087f15986db4061378164408fa213c83b88e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/knative-webhook@sha256:2b3758f53a3d3161fd97f680dc6510c6025b898cfd67a5ec8c6f49a4d64d7cba
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:5100212145adb6bcaf66693cdb57ebbbb2b418041e63ad4a81349b3360359a64
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:e573ed525fa3c4e03217f65a22597a67816138760a1e84b3b83d42da43f87f5a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:107f5fe886d6d93478a61cfe0890b15390a5fa02f8eac2cf151692397d5b3534
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:9fa20967075877c6cd260b8047304c36cdcf11251072bb00ef8326ebebb9527a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:7bf535398a8a1820f7d025e87481fc423eca49846606cc95c0e5fa4008ff4237
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:b89c0fdda2c9736158038c0735668874df061eeddc856a7b3e02479a5ef38f68
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:aa60682c4cfa1f28814e8c7e622dbbef661d8f96d2a8f7107aa0bf997b7f1251
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:9840c63764f7735de35cd57c551984d8a8cffd8e36c32b1a76f7a5d98170d5e2
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:805d164cf9610ae002e27f6085500d542d6eee83efd897376144134d9391e031
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:603d91a085409ae386c6934499c000341e5a90167a60d3d09a4329cde65f8274