Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 8.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

8-alpine3.23-fips-dev, 8.0-alpine3.23-fips-dev, 8.0.31-alpine3.23-fips-dev

Index digest:

sha256:44ac53c0a14a65327ee9c62e76a97ac0916fd7b203d9a7f0d79efcca619626ab

Manifest digest:

sha256:76733d3d30656f7468dc472112fa97a8e4cb94e1f9570540e7f537a87289b05a

Size

56.53 MB

Last pushed

11 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:8-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:8-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:0d6e542b7397857490fb8a094eb61c59d726beec1573ab9d79977f1356fafc6c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:2a46005dfdd5d9c8e096e073e9e8d7b0e77bd351112a7f4774d37310f9363197
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:1bf0a89148dc1f40c21ef8ee78b6ee378d61ca0aa94b51b79f81c053b71f5dff
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:49db2db40ea9141bc5b41c3d332c75b44ca42ba014bfce1e17ad508ebd50be3a
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:4b1d56ff83d8d6226d189f8fb63513609190f2debf08f4a2d9a8271f049f06a2
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:a0fb3c18616cd079c18f731eb6a8acc7e526fa6377b3e3f52b9488949c3c21fe
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:ff6969608abd51aa4be390a2439ac229b8b3ebafeb76c2de350393e0afbe4fb1
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:2054532fc165eba99b0ec6efc9a9bf8824420b573bd0cb9d28143b96c9a7228b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:968fb0c510716d68d182cd661a39d9384a9ace7fe7a8149aa11fd3660c6f4aab
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:743e8e99dff82a0921c32adb813659c679e89dd545892212fd3d71ab251fd20b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:61c373139d49c86289f17668a0cb343570d1ad5a368b1db882c0b8b29430e256
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:85d2c82baf53644a4705875b04dfe6ae25c8160e649226aa3d7f32e3f8695546
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:c2ba4ced1452516a0b963202c24238f4ddbdd4732ec1c41cd9aa273789c4b0d8
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:d1a63b5c4b73a30585e0804c72e67bf34e75649483c806b473ab02234410d8c9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:1afcda4b39050626d0accf013a2af2b79fcc6ad2ad4f5e6cca433617088d4b7f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:c9409c06ba08321628a51dd993401edcd9dc3492b558e6e74187717dce2581e3