Sign inSign up
Tailscale

dhi.io/tailscale

Tailscale 1.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.104, 1.104-debian, 1.104-debian13, 1.104.0, 1.104.0-debian, 1.104.0-debian13

Index digest:

sha256:908fc84ce3db0040426e678c82947c161c09f9e2ecc39763842cd74c7f106b78

Manifest digest:

sha256:6788fcdc8b103310a6a7b4e112eb5482a3b63220fee482a3a2a9c9e8d1920d13

Size

37.26 MB

Last pushed

3 hours ago

Vulnerabilities

0
0
0
1
13

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/tailscale:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/tailscale:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/tailscale@sha256:9828eb1fc3b4fbade6628477353e1c0a7aedf6c0b95d9a1a1b5d20ab2895816f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/tailscale@sha256:f6ca0b424bf698f6523b0f76e37f6f8ab004ccb8e5cede0ea15d612eb9498c2c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/tailscale@sha256:3111fe1e5a2d68040705736fd048a4f55155ee91e55b8a2c6ba0c1caa1becab5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/tailscale@sha256:88312e0c2b0346331a10a03badc0ac2de2a1310033c6f74313f6ac049e92828a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/tailscale@sha256:3821bc57f0170aaa2843e3bc907ca8277db996fdf2090a1824a3731c5cc8ad03
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/tailscale@sha256:e53bf7f50f455bed281445e15605392a659b8d0de67d34ba86b24f3f643b320c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/tailscale@sha256:9ef64eeee94213a0895d1ba142b7c3ca21fd48daabf0cdc61ac60313d0adb647
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/tailscale@sha256:d0ad20a1736566564feb8b85f1508ac394a2457f9456ffe11b3839dfbcdcde9d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/tailscale@sha256:0ff75ef44553a54a0b0f06a30524560ddf406b7f36b2b90c7f154738f7e9bd30
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/tailscale@sha256:7645b19bf23d34791b190c61231effb1fd050444291024740e2a0c1cd1ec67b5
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/tailscale@sha256:8794469b7d07ee4fb39549d9449d46371dc1d223858e4bec8791bd85f6aa0935
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/tailscale@sha256:c42bf314a2b7daf264050d4e56c92e2556f0914c9905e32d51beebe2e4ccca5c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/tailscale@sha256:b25b11e12608157f755494e795281a4945af5c7992ab13efeac5da105ca3f8aa
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/tailscale@sha256:2d33e6d6620f69119ba40123477caa7e90e593c801a0c33df907a89520bc6417
SPDX SBOMhttps://spdx.dev/Documentdhi.io/tailscale@sha256:6231af0c498545061eb8bd1b9e0d4ec2aa85360b340dd7e16ab489c2198e8571