Sign inSign up
Kyverno CLI

dhi.io/kyverno-cli

Kyverno CLI 1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.19-debian-fips, 1.19-debian13-fips, 1.19-fips, 1.19.1-debian-fips, 1.19.1-debian13-fips, 1.19.1-fips

Index digest:

sha256:338a24c030a4b333e06ccb6bddc4f9d6427115e93f14afb2090bf1eadf1d2685

Manifest digest:

sha256:e1e21bd254f44ecc7aa71b7340dbdd08c35b14506d20930d5e26330bd055a683

Size

45.67 MB

Last pushed

2 days ago

Vulnerabilities

0
2
0
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kyverno-cli:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kyverno-cli:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kyverno-cli@sha256:bd6de06f7d6aafbff60d2b614f8e2a9ae03e56250f444cdaa49da85ccd1b3d7a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kyverno-cli@sha256:9513e0984b708bdf91ba45514e17a0ea1042519bfd98e0cd9562649679f192cc
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kyverno-cli@sha256:6608c974f80b7fc419f77b4b27ab513ce46a4a7267a93b4fd66d7f30dc9adce1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kyverno-cli@sha256:aa0a68746805cf9d3ec9d54e74a26c39dc2d45d66d3ecbe664097b598a0b9cb6
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kyverno-cli@sha256:ce0b71c1504364a322069afbcc2da93238d6e2dda1625a3be299315ea5493737
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kyverno-cli@sha256:af40729b7cdb5bce1c95b9ec21d3e45ec13a1a2a86c9d8bb733b90025ae8c4ae
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kyverno-cli@sha256:7f190ac104bdc2fad21e1c21df584ecd5d71a14f18eae8390217978e8741ee6e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kyverno-cli@sha256:a0d0f3fbc5a85d333e67ba75a35e9b31738744cba9bba31813637d7f161a729a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kyverno-cli@sha256:b9d3913548bbb6a7aaff4fd87eae91a1a4a73e7237c2e8449755374fa7fffbf7
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kyverno-cli@sha256:5091235d01eb81b8668837867e7c5d933de865b81c0087cfd72889aa97f36dcc
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kyverno-cli@sha256:ebcfc31a7611f6a8fe6577eda4b32e3faf8666e7164e54abd813eee567b4eeda
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kyverno-cli@sha256:07c50b3d9ab4649f47871e9416b10778e2bf79f96bd5a96611eaffd911012963
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kyverno-cli@sha256:5a6887facc25c85beb8f434d1b2c6541ed50ee40d8d7e333e98ae7f799c5c827
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kyverno-cli@sha256:90c5d01da2322c0fd1bfca6d26ec64d89c3535cb329d66978fc4c6895ff691f2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kyverno-cli@sha256:f7c78362752363f4b376a9efe6e72ea32247e2593c9273cbffc18b4035bdcbec
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kyverno-cli@sha256:870fd04d15ff1054d2c65e79d96fb0799355044bf1bb29746cdcc28a50447794
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kyverno-cli@sha256:4199dbd74f322ec55f79764e64a3c4ccb3f2ebc4e564d2423fa545552b46fe6b