Sign inSign up
ktls-utils

dhi.io/ktls-utils

ktls-utils 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.5-debian-dev, 1.5-debian13-dev, 1.5-dev, 1.5.0-debian-dev, 1.5.0-debian13-dev, 1.5.0-dev

Index digest:

sha256:174b9e0c7d9a2e67cce454e60354173e86855b23dfd73f2269101640ddfb660f

Manifest digest:

sha256:6fd4bded6e2fc5f29203f17376ac5e17075f6886617d37117295e76eccea40c4

Size

27.31 MB

Last pushed

9 hours ago

Vulnerabilities

0
1
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ktls-utils:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ktls-utils:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ktls-utils@sha256:dea4d6e74ac7633f4ed9d639843c1e67eff2d119faa9ee4212e379b637e70898
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ktls-utils@sha256:9a19c509b437a661c6ce3479d9b42dd3d7accf6c4d20b04f571811abd516600b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ktls-utils@sha256:c9baa239251c6da03b26201a1fc600964a8f2553440351b8839a54d0d1f9bee4
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ktls-utils@sha256:9a81bff9191f5164c931b3eb69c3835e592c188f20cb6885bcac771722c9d052
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ktls-utils@sha256:8bccfae3e65ce88c5f0f7caf587998e8cc214339618e3f6045c40d841fb96a6a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ktls-utils@sha256:ca1c38f824454f2e3c472f22ffa0e295d91cde34941fde726fc7c72b89a2a273
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ktls-utils@sha256:89fb73d428266b4ab5c547a8833b828368b9735d69dd9f32e658ddae7f8cba36
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ktls-utils@sha256:bc744212ea79f200bdd3a375b165884bf0c9edc5a9403011aa5329557ae3fc70
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ktls-utils@sha256:c3cbbc3b10dc7a786b51cfa47ae665381442d867de4ff99aaf2d4030344495da
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ktls-utils@sha256:0b52c121623b0c6fc3184614c68441fdeb19fdd66c6543f0a5e3208906e895fa
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ktls-utils@sha256:4dbc51aa4db2cc86d22aa551455623bb957b228c02aaaf35ec3069fc2f6f3971
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ktls-utils@sha256:f47296761eaf1d3e3c2d4e5d0cd8fce7db4eb4d2c604e3328c2b71511964f1c9
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ktls-utils@sha256:64cd8c49db9aca7b2f728b1ff188393ee2f09dc7946af9dcb1ec10cfe77d8f53
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ktls-utils@sha256:ae2fa0340b3fd52194180eba850b105710a7f8271a2d49030ffc8c5c1c2c3314
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ktls-utils@sha256:e796279b756c4c750b41b9d7fbd6abc7b1c2ea34d2f6604be56bc7e26768157f