Sign inSign up
ktls-utils

dhi.io/ktls-utils

ktls-utils 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.5-debian-dev, 1.5-debian13-dev, 1.5-dev, 1.5.0-debian-dev, 1.5.0-debian13-dev, 1.5.0-dev

Index digest:

sha256:22d7c634906b7f96481b5fa43c52d98cc9205141a283a91e4a661705569c556e

Manifest digest:

sha256:b62eb082d1b7acf25c145e1e7581e67ebe258caebea1211c18c85b9292672d44

Size

27.31 MB

Last pushed

4 days ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ktls-utils:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ktls-utils:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ktls-utils@sha256:8f20822c9794f4b45ba74d9016eb33058e3e5cf643f7e96571c11f28caee0ea8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ktls-utils@sha256:aa0ca92ace78c3039df7ecad795d8b6edc8ae30a267204223c145496d750c077
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ktls-utils@sha256:1df118f9fc57163cf7015bf5ce200ef69cf198e78e2da34138f2f9d60ad9285a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ktls-utils@sha256:563b2305fc84995a094ce28678dd3efa3f46342327e98586e29a01c404da7568
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ktls-utils@sha256:d47850dd63fa8a7cbf6dcbe166849dff133f68ebbfd74bd6446bffada4c89d1d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ktls-utils@sha256:1c9b7640f7329f6f06c2b3116881a6d9abd75c39008342ff35e9cdc30dedcc40
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ktls-utils@sha256:213366ae72a3660cb79799511fb3e2f82c9b659f3745890f718e2881e7f0b979
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ktls-utils@sha256:bb0559dabd14e02accf2d93d9616c9671a5ab0bf2b494529197b7d5bdda2c6d6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ktls-utils@sha256:6a63a7858589cbe2fa34df4b146474140f8adf877b313bb2d229a64d2ab90a3b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ktls-utils@sha256:e0e45ee303a484f25bbea72038f842854dc3645388c3ce97e8828568e789d284
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ktls-utils@sha256:3b51d47202a05b8afd57a46ff6fd37efe47c376a78da509a8e02ec26ee4e3c3b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ktls-utils@sha256:e0baf2b48d7679b6ac0a79ecfea55270c52f33eb0078773fcd281b83aeb1cfc0
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ktls-utils@sha256:681388bc4882b11ac5dac72fcaeee64305a9e8776317f6ba52777fc0ca2a4a96
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ktls-utils@sha256:60918daaa50485b8d585cd001c74861fde036badf507fd3262cec520cfc66e9c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ktls-utils@sha256:3addc92f0b7b2c3510f26895caaeacfb28001de055c2e117a0ce0874f5f7c9a3