Sign inSign up
Kyverno

dhi.io/kyverno

Kyverno 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.17-debian-dev, 1.17-debian13-dev, 1.17-dev, 1.17.2-debian-dev, 1.17.2-debian13-dev, 1.17.2-dev

Index digest:

sha256:a8f05d585cc9982ef50011f701fad3cec299522aefd754f5f2d034a8313fcfe8

Manifest digest:

sha256:c3232818162f027ee3a8b3a0a4afbb83deea768d43d091be9ccbdb88a97f57d7

Size

90.27 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kyverno:1.17-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kyverno:1.17-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kyverno@sha256:6d99b1d521d248413c80a5403972ac26d4124ca19405529c9eb9ff3773604a37
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kyverno@sha256:2e831aef1b53f4b71b5e6e087be288736a9f2d50dc6fc1b7bdf319ecf68733cf
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kyverno@sha256:f8fdb515df247f4c87d1b614b6b4f8343ffacf6c0ad3a1e83ccfef139c109948
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kyverno@sha256:b918968da2ad1258391ed0015ab2c92b74102fb97bb2c6ba77bde871e1ff3d28
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kyverno@sha256:b76bf28c67b49b30f2c1fe848749c89cedb9c54582f664077839fe7957f78ef1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kyverno@sha256:499ff35616d65fd796a7ad908d98be054a9b54c55632763a578d64744322b40d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kyverno@sha256:fcc391ae63a5ce1f09a3eea2c840466b2250ecc99cf7c6ca986723401057ffd4
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kyverno@sha256:e1c4e29eeadfd88be2366459e6fe2772470ba0db1d3cbec311969c853c389ebb
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kyverno@sha256:90b941339907d8715116b4bd3fd8302a180a887a5813a6ce35dc54b3a1573391
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kyverno@sha256:07752d4c5f78e777ce741bbe56b51fca2351c28163a5133429fecf9079b39392
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kyverno@sha256:78d9cf87e502291cd6ad62b4ad27a8965c70612d25ba1931a6520961cb7f5d23
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kyverno@sha256:d46392c10191741737075e45814e3400783eef030fc1791b11aebbc53920ea21
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kyverno@sha256:aa1c78cbbb1576fcc0fffe65b3cfc83133b3f39782445cd5e36260eb019d30cd
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kyverno@sha256:0c89a2bde9b3d5f485f0ca03576d862ab0acbdccb3c79bc2890df46793894464
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kyverno@sha256:fc12332b65b37c76a39b618c6d5d0a90ecfb3fa27c8afccc5058b4d9c9388dc1