Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

10-alpine3.23-fips-dev, 10.0-alpine3.23-fips-dev, 10.0.10-alpine3.23-fips-dev

Index digest:

sha256:d2a94af7e534ff7fb0025e6aa84add0ba756bc11b33d20976db6e16ab3184e70

Manifest digest:

sha256:9618d401f3651cb8f4e04e9d3138ac6e3d50d2c46e3d75382a7869dfcc7e1eac

Size

58.48 MB

Last pushed

8 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:10-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:10-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:7d16207c16b6a65ba9c1ff69ae822e42a3cd33197fc452ff197b21bdd70b158d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:6a62dbe8be5a706868bd693a3f3e78c2edfd799a921c1dde574b55a71e4c3491
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:004be6f18880ab0f3ea9d872769ad5d8f3c11b71baaa84be3826ce3c4d6ef0ea
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:a64074478b9892e10a5bbe4babea22ebda4ab86ef1059810d3f2faccf555020c
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:a53708578b6585be091e1e2258d30c79b0a14c7bd3b3a9e73ad2bfb4568adb7f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:5dae17eeed9494154463a93a61ee03b116629ce62382e403ab41a0841a12dded
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:cc4df370bf999da482776e47b14b61ae627a861fe3ea95a727bb98b7b2a34fe3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:92d6f8674977d72f392c1593f705808d6d51fdc772a544fc015d5e67625c3e71
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:f3d86e8ba85d14b3fa1757c588b91fba030a14fbcbb15a26e274d4b60488ff5c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:c7601c37584e8d5f087e7c92b0a40a3f83232b4a6cf40d7ca8898d53a8741306
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:f80131892e0d35c49beaee5211dd1236fbd73570c92a0ad2cf1c93f42a58e8b3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:85aaa19a143de7677567015351c0a2856f69796c75af35013e8807aa66f249b0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:45fd3a0ba454a29e485dcc976d73594e6c202ef4ef6813734a8934aa6933ef48
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:73837ed8de309457f34e1b0d0336c3eade87385e29c933707bdd7f35783f9650
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:24aaa184be0b8b8cc14f6482c871719ccc99aed7ff9b2ea5d25cce6e26cb0b7f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:39d10d1a8f7a7fec64a90ad827a05364abda2e678e65a56979d522bf5465a278