Sign inSign up
Logstash

dhi.io/logstash

Logstash 9.4.x

CIS
linux/amd64
debian 13
Tags:

9.4, 9.4-debian, 9.4-debian13, 9.4.7, 9.4.7-debian, 9.4.7-debian13

Index digest:

sha256:dfcf5693c45b0727268c4171ae1bcdbc2b47a16d878df84041566ae32164b439

Manifest digest:

sha256:54dfc48e759d497a4ed19485b3af2c7cf5f0a8d14baf9f1be2cf6893bc6d2037

Size

416.19 MB

Last pushed

4 hours ago

Vulnerabilities

0
1
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/logstash:9.4

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/logstash:9.4 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/logstash@sha256:644143b057f18fdef255f7fc40d50e71e026ed1fef5e932113be88928882b2d6
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/logstash@sha256:050577af5a5852d13d97d574e24f955dc9374fb69515e95fd8d2f2ac9cb2d198
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/logstash@sha256:c4f6d6df70bcf193004277e655accef9af7ec8a1f040aab9b90d4b2370160aed
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/logstash@sha256:e66fb6ea33e6d7ea94e31ea973bef057f23edec420fce7f73e320e47a729dfc8
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/logstash@sha256:9a1114674bfa1ca2a189df6a516f79b330671838c0260bb3a42dfdbbd4029db3
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/logstash@sha256:30061537e03390a42653070f5de920bb9bc1274c35eb2644c41e3825c3cbd6dc
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/logstash@sha256:2e4028486a72413d7ac221068d2c51122b5df6a7794f3d56b2882f3d84127c61
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/logstash@sha256:738b4e2e22ef265852eb0fb05f39e5710c9d2bcec650d1d08869993c0a402acb
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/logstash@sha256:26b5a02ade32065c6cb005aede4bc3d99345f5dc5364c37ba1e1e92b5b830ad2
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/logstash@sha256:1b3aafa87e1a0ff9f5fb0909754950342a5c6b82befda0a0ed52f168c06e778d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/logstash@sha256:1dda688e54b9872ed21ba6d21a6f311b24feb63f9311b78721841e6e6f888b9a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/logstash@sha256:d00d921d0cec977e8635de01ffdb426b4bcebaa30f9b0e6074aa4f2f0188e0a0
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/logstash@sha256:86f970af217fe1ca68262b2585975133dc107334c952bd0515d438d1c80711e7
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/logstash@sha256:1f852f9be43710aee1824a5659f440335469128e8cffb38d3ac840948ecb5aeb
SPDX SBOMhttps://spdx.dev/Documentdhi.io/logstash@sha256:943cce2c0b00db85f26e7d44b403019a70404792b2333d9eafcb3526e3721aa2