Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.22.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.22-debian-fips-dev, 1.22-debian13-fips-dev, 1.22-fips-dev, 1.22.1-debian-fips-dev, 1.22.1-debian13-fips-dev, 1.22.1-fips-dev

Index digest:

sha256:60b106a78fd7cf7987caa57369a6489ff0c859770cc1a9e61beca53eaf7ade72

Manifest digest:

sha256:afa04864786e28a397289009b26aeca28f1e7b2a40b87d1f8e16459915152fd1

Size

53.62 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
2
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1.22-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1.22-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:f6781a98899ca588acd2910ec4a9ac0443b558d5b19b5f7047a9c546d2d5eced
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:aa098dfdb453bab3a407e77826933ba7ea496671cb27096428812e7888ad9998
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/knative-webhook@sha256:f95beaebf55a558a95438eca2ed8fbc40d313a4c7a52fc8833a7e77e40e9a250
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:c73b3ca0303e535ec73c19f156105a4f81bf3c10045af4549332eb9c70ff6857
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/knative-webhook@sha256:4d1fc491a2b26e72e17d36ff322ebd51d6203dfe89acb8d99afc64d4500648cf
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:e445c24720e3ce8cc4d51d1be2968370f6fae23874525c79a48028943a3b4c4b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/knative-webhook@sha256:a1755a1601b1f0be0f8e4416a7a1f581d8a07ef3591591eaf4c8cae053fa10f5
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:a98b4270dd9e2b2b6db0c1c5a98453be19962dd9f253f5a5fef36ab63910655a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:f75da3fe97148542d69b3b30a16c55e9f20e3487d18b5f1f25cd96358157aa59
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:43a74cbd5be3e2fc9e6c76c7438e48ff7fcd28006d254387756eec07c0c8ae5f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:794e496dfe63b692ce3d9245b5807f2cccc8469ac0344e9d5a0e41f407684309
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:3bf218e4b928395cbefae0be80e0e1f54067d282efe3be8727a5b38451d05c6e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:7b653e6355f970bf445997b4c65ae90da9e8c52f7ea967119aae55cdc7dfee6e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:5c758fabd516b8ff16a8c32294e74f5b93c0acd10e26198cd2fd6e69ea71227f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:19ed4195422cfd2976c8797accf61947a651edd3c6d44c5cba1f3e68da1aa3bf
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:cf7413dfb48bb5468dccddfa5b1d13876f446034ddb781f8126176131dc99556
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:6479c51f95b9197430fbba4b2bc7609d798f804a147e71c33b32245cafd2ef62