Sign inSign up
Traefik

dhi.io/traefik

Traefik 3.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.7-debian-fips-dev, 3.7-debian13-fips-dev, 3.7-fips-dev, 3.7.14-debian-fips-dev, 3.7.14-debian13-fips-dev, 3.7.14-fips-dev

Index digest:

sha256:9fafc97d961e4dff3b00eda46d493d854f116671723d53c66467c5fca70010c5

Manifest digest:

sha256:df56100142e434a8bc4e2fa544e2dc22849d9406a07a845157a15dafc3fb1923

Size

109.55 MB

Last pushed

16 hours ago

Vulnerabilities

0
0
0
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/traefik:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/traefik:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/traefik@sha256:8962c3943e970933dcb05af602f6124ff5261f255bc4382ecb30e16f5e6233ce
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/traefik@sha256:a4e9679b99161f885a1b3f827deda234e13e72c89d0909c6ebcb917790633d25
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/traefik@sha256:ba8863298e87ab1940bf5b41305fb4d1db4f6ff034e74772da094ff9acf51fb4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/traefik@sha256:020f7e319358c048562803ea42fd8e0c65f61bab9ad443fed6780a2d15e50c62
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/traefik@sha256:41d2d4e848dadfeb51b1ae6a559c15a7f889c75513b8b2d03ea62eeb640910c3
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/traefik@sha256:3171e0aa13a04666a903324bd7cebfc60b7d8dd32f05ccb93e5b1e5616f78e10
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/traefik@sha256:e2d87810c1ae5a5fdfe81f1167860f3f5813f9626312d28b634184d658d40319
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/traefik@sha256:ac95de237697aecdc7e85da67bc9bfb44d037cdf5587f62fd313d4d346dd8a18
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/traefik@sha256:4f588526de80a1101b818b7a9676d88664256d5f6183b7d2bc4bf24f20784d81
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/traefik@sha256:e55659db4becfd463d0e5a8b46bf4b4bdef1cb5bca92908b08468e036e727ddf
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/traefik@sha256:11c2c7a8d2908c5b3e73272dc7dcaf1d58d3161e068ad613618d44421a8d0690
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/traefik@sha256:d6de117d9c6a57362b5d55c3766706542b1ef0e603c752917d8cbe4c6c39cc15
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/traefik@sha256:e03bd5e1fa771ea263c95d4ecc58d38815bdecb9a0e57b2b2652d08d200e03bc
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/traefik@sha256:29e003675f544db9213214d3a65b3feb20f71e1a110417abad879c8d71b26e6b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/traefik@sha256:21650aed89be279d0bf54fe5f9480c4a36c7df105d8120ebfad0f87c5311a852
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/traefik@sha256:61776e55194304c44b050d4a48926c4e4677cdb19ae8d41988cd6f7cfc54a760
SPDX SBOMhttps://spdx.dev/Documentdhi.io/traefik@sha256:1158b7da74f3ad9849fb4ce3f5e0f72d3e004dda35700c9ecec1b5ea54c64355