Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 8.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

8-alpine3.23-fips-dev, 8.0-alpine3.23-fips-dev, 8.0.31-alpine3.23-fips-dev

Index digest:

sha256:f4202c053d27941928c68dd96424b4bb637ed21133fd159fba4f1e694e4d9a22

Manifest digest:

sha256:e863059e14f2e863fc9ec1cd3ef7395390c325ab50374eb34c34d6df23a44c1a

Size

56.53 MB

Last pushed

9 days ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:8-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:8-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:93d382add0c1da67c30cad22f230d48ff8225084636e886b0c93315686037a21
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:67ea9a460e8c25cd496c48475eb92fdc33a64e74c05d26cef45608238c084592
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:a8db6a6b966f3419aba14eb26361a72af3cf0e9104044b16758861a4f65562ce
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:021c99be24c53d742412a72232610dc42f988f5565d2620034fb54012ca46c8a
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:17d65ea888abca993b4bc86358539076861be548d232cb6f6e90da8b0e89d8f4
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:e56a769c22398ee1bba52c3d068c7f5e642de34a3f043a5d0b60e71fe0d81597
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:9688ed303e20ba49aab2046e8d23fe0c0ddab9679c2490a2f4f81880731ec448
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:628dfd565e716ba6b7d7f53f1ced7ae8c8f6735fec49b8acd689fbf89ffaf4a6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:8643b92351f3c55421e697dffaeae436d9095890e45a73cbbe9e086792a6eac8
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:6d34a264433291551735b0556e8fcca10cd0c6d08ed7620ffa613068d433b78a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:cbf50fa35485f3d20c5e10e42721db954191d627ba78b8314abeab85857dc16f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:47aa453df02d9e967f74d191b0da8fec105e3d216c17aec02871f1b0adba841b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:9a92ae57c4fb59b4cf2deff38f132c902f24a95e6fd59cb5d257ccbdfb9d763f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:304cb16a45cde1c4abf681595a22a74aa8c871c41b332e50746d87f0c0d44bf2
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:18ecf5eaaa1d356fba2a0029c7f2c0c8529af2a8f3885806a5217a94b311a00b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:38d9eed58a1e43ebbb5f4fd78e477353056d060e876ce68b434b6bc4bdd21253