Sign inSign up
ktls-utils

dhi.io/ktls-utils

ktls-utils 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.5-debian-fips-dev, 1.5-debian13-fips-dev, 1.5-fips-dev, 1.5.0-debian-fips-dev, 1.5.0-debian13-fips-dev, 1.5.0-fips-dev

Index digest:

sha256:9a4b054c3f360c5c3bcc69231923ff27763f872ffdcaeefdf0cb47f164309097

Manifest digest:

sha256:9309174546fe8c788d45722e13d5bd11aec4d2a469baf8fe907773026fdfd4b9

Size

34.67 MB

Last pushed

2 days ago

Vulnerabilities

1
3
0
2
2

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ktls-utils:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ktls-utils:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ktls-utils@sha256:8431d3f144d28ad34003bac41b33dd13ead6999cd6a1a8392ec27d1890731a9c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ktls-utils@sha256:542cf9ee75b65f0228e75b65857a52ef4ef18b58e857a11c1dacb26b30ebead1
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/ktls-utils@sha256:9bce5b8953702b0c7066e4b71f993e24b46ff4b7df18975da2e67449d8b9cebc
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ktls-utils@sha256:39d05419bfb05497b524996fb8b06d83674caa1c6d109fba1385c84b48a55a75
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/ktls-utils@sha256:3886d0677be27cb4300eb9872da158b25ac2179bfe65d1aa1ec87fcf61f9280f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ktls-utils@sha256:a65516fe2893679d7d30f7156800aefc2dc0222aa243b591a8c9ef172aa43eac
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ktls-utils@sha256:a055992032a3e2ca8ad4953fcb3c634eef8ab35d76ee79ee1468feed3b70d3b4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ktls-utils@sha256:85465940ca57402aab85d07283415a70a721ad81bd3bcc2a137b2bb257e55d74
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ktls-utils@sha256:72772f6ef660fc68c48cb8e6df1dafcc89e937817942fc1b5e95c14a308dc9a1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ktls-utils@sha256:787d34e999283381821251cef26b19c25b54ab6e7f871b947c10b9cfabb3a2f1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ktls-utils@sha256:a84b500870b8e4d8d073e9b8106157c9e0ba5a70a7c649ba3e522eee17a21e6e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ktls-utils@sha256:fd73e5d6c8e7b5acc57ae965d01f0ed7669aa02c7109ba718f54910f29259490
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ktls-utils@sha256:4c6159ade1934078f3f498d6d0728b0531a30641ff47eaf74595c2f0241fceb0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ktls-utils@sha256:36b9063cb84738c99b7be71b7ab54f1415289ac0a6b78e74ba1c8eb8a4ac727b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ktls-utils@sha256:48e1af43fe0eac6fe707ebd8b99456122033fecc2260399c50d89f119062bf0f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ktls-utils@sha256:0d499a6c847486bce5a569a48181c63576dcf0f949cc668ae9a260500c6a5995
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ktls-utils@sha256:49b28028471f90cbd055f045606fb609ec671d3760ed5a3760101590ba9f0342