Sign inSign up
Traefik

dhi.io/traefik

Traefik 3.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.7-debian-fips-dev, 3.7-debian13-fips-dev, 3.7-fips-dev, 3.7.14-debian-fips-dev, 3.7.14-debian13-fips-dev, 3.7.14-fips-dev

Index digest:

sha256:fff9725d3f4e5a1a96f9c6c5701b0c1aee9bae029c768eb9dc8e30eb8018e07b

Manifest digest:

sha256:3405b2c4cd9e6065de04efa23ddb05ec3bfd2ead05ab2b1284679ff39af6157e

Size

109.55 MB

Last pushed

3 hours ago

Vulnerabilities

2
8
0
1
3

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/traefik:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/traefik:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/traefik@sha256:8d8009ceeb60a7c5f156dd9428c66a1132d8adf368461828445640c4dd719617
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/traefik@sha256:a7209abbdd0971b24d6c4e3d2fd02dee9833a95cdb7ee8cc40c8927d5d7eea86
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/traefik@sha256:2b2dec5508215dc9049c9d40278be8f2ba21ef401932f09d8f24acf651f45044
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/traefik@sha256:8595f40ae77f220572b77489cde3ed36977551d1f5f11b626a02bd00c63b631c
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/traefik@sha256:4089b5b3ec21cbddba6ca9c1078a603437034077c105122d8d5ea5dbc63c2766
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/traefik@sha256:bc094c3b3423ff6aa65bd8323a845188733e232fc5ad02d79453bafd637cde66
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/traefik@sha256:a2af190fb1df9453ad7c66bda9a920e0b3e3af79c7413894b1aa83e72ff16bee
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/traefik@sha256:8838d8f8d89216d0edf61d692fcfa4982731b04a3607d0ce5fb0c1892628ee9c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/traefik@sha256:95ffed3b7c6c9b82957f8d5679b1be635b9cb26bc259b27831f86fbdcc4b994e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/traefik@sha256:9123a0ad610b8be301e0c7f134196b25551932a2c4afe35fd2f000c0896a65be
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/traefik@sha256:9bc393cd3402d44e432ee4ec2d2a4ea5eae0a7aef5c33d2c1f8a3b703ca00b0e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/traefik@sha256:31c4fcd22f193e7cd80811b99f98fe665af7db876dda9f9cfeda021ae2abf522
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/traefik@sha256:eb17ad13624f7924958b99bb8b75e27f5854798f04c110eb831ab5753b7b6e8c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/traefik@sha256:1d091d3e7b2dcd782c603e71e9059b30e70c0b6a94ce1db6f095f609f2326ef6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/traefik@sha256:a7689cb1e988dde14ebb62289ea5fb3be5e92f43bf0e75712d16e37e92436e0b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/traefik@sha256:c877ae7d58ce4f93064cf84f79b6c9dbbc44e04494d1031e8fff1c48bf9b0d38
SPDX SBOMhttps://spdx.dev/Documentdhi.io/traefik@sha256:ae1dbb3b2e9a8dde16a5032e79b91b235d2ce1bfa57eea9bf513ffb49f0140e1