Sign inSign up
Telegraf

dhi.io/telegraf

Telegraf 1.40.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.40-debian-dev, 1.40-debian13-dev, 1.40-dev, 1.40.1-debian-dev, 1.40.1-debian13-dev, 1.40.1-dev

Index digest:

sha256:baaeb772e349ed1e2a7da30c961675ce1925d7f6b6e2c76a95286c7481f211c0

Manifest digest:

sha256:036b9b7e8b00e87ab297bc392db4eae61559cbd65c7805f2211abca3110808e2

Size

173.13 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/telegraf:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/telegraf:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/telegraf@sha256:38991886af0495696f2ae3f4839384f2eaa435b93fce829fbdccf508e1fe762c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/telegraf@sha256:1a6749698f0c350c54d7b6d0fe2a431f19eecbf4edd3c659ffa35aef2d71169d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/telegraf@sha256:8673a8506796ab17c437f86d52c39b427b60734f604ea7e0efca6184f59004f9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/telegraf@sha256:8e257e7cf05fb8e7c9657f69d7245d92496f250d55c1edcc29a3851833c3dc68
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/telegraf@sha256:57ed5042a7b2bb28161404a15adefabb2093b493a111ec0a63dbd6c366316c21
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/telegraf@sha256:6f5f3ac85591fdafff87bf4d5d0d26821132426be114cf7b1795f181638b9444
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/telegraf@sha256:235c8a014d6491f1575df7f5dbc9a1106e8918cc10125db3192c422ad240aee3
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/telegraf@sha256:5f3800479266673c59b02ed172185402de3215f9fb6f8934d6affa7e8cf5c4d0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/telegraf@sha256:7862a8078dd4b1f2492d0084c969e9264e4caae74b46897b238f74c138e2367a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/telegraf@sha256:4671bf07c99ab2b779701ce6ef66c12e5f464b29ea216792a3d01b0a5d9d1895
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/telegraf@sha256:7fb0f0bfc70a8e9fce2f3112401a939d91fef75d651bf8398c23983300159f1b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/telegraf@sha256:c2b4c3ec04dc86aed12b262f2ebe5e09cabf229f0cd5bb5729e1d5e713eb6598
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/telegraf@sha256:5690af043331247bae4435c0611b51c302f7786f6749f5a3c749279c4e13ca27
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/telegraf@sha256:629190e6a8a6b3b31b9dc81619e2076ea09c94069f9bd42bd87a4cfd3c5af83a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/telegraf@sha256:abde2ec0e806d648d1534d8efd5932caa2ce095e3b93f64e44f2e32e9c7f811a