Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

10-alpine3.23-fips-dev, 10.0-alpine3.23-fips-dev, 10.0.10-alpine3.23-fips-dev

Index digest:

sha256:324f339d1428bdea590ac3d9b2876ddc77fc3d074379a0229c32ac163cdebf2d

Manifest digest:

sha256:3b530a92473d8e7a180fd0292b22acbb5cc79dcc266c50da12b275be45472e2e

Size

58.48 MB

Last pushed

12 days ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:10-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:10-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:b572af5116bb63892537a2c66baf07b7185da06ba8045a10cb38b2f3c968164a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:5691f9a95aed2f8fd7cf1fc298879d59e5eeeefb3de6444f24d722a29ee0223e
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:55d6b3eeb90fbf75c514a4f076cbbdbe279d8dbd8f00f27a088970e5281f3924
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:f67adf6b37798e8ee5384a69b2dd2d441c2d16300b1d88139de55693a2b7391f
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:a021f4aaa473a85802a5e83ffaf977f155edeb10509f3479496e39a5c6147fe8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:69cba67dfd8afa65466e451321a2132634c82435750de668cdbadeaeea1731ee
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:9951526f8ddaf05f31446085ea7980abc7e8d48216b1982e64c9029b739171fc
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:6e7e6a2a25a8db56711f105d3b57d59dddfce1f41a5bd474741f977691ac8453
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:073451a5e0b8da7deb7efca6153eb4071f46bc4720e4f021ee99c9a7f1fc6b83
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:d0d8fc7328b92792af672afa196c3737f2d1d6d868e987ec25b1c04062da2d3c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:e9ee7a50c9acdeacb7cc215734010ee1ad9f5cd9f3a9efd2773e1f23920544fa
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:690ad2fd8284e9399edd6f17943e0ab64c1ef5705c586248b6f314e0a7177031
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:72c49ff4999996f337ee4c7d250709462568d3e814eae4a23d38e01fa411a090
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:b004c3ca70ff897f3f2fb089abcabcdd5973b147365b2cfc880609195abf4e32
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:3b2bbfa4e1e8f1b0a309ffd54072af47da2acaef8ab7889b3adfabd8d258ad1e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:3fb29fdf1aae8f71a3c2f1e24da93b63d76b3bd7b0c60de9ec98620154e1d324