Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

10-debian-fips-dev, 10-debian13-fips-dev, 10-fips-dev, 10.0-debian-fips-dev, 10.0-debian13-fips-dev, 10.0-fips-dev, 10.0.12-debian-fips-dev, 10.0.12-debian13-fips-dev, 10.0.12-fips-dev

Index digest:

sha256:4cb78102da8d0987e4691200763232ea635ee8c4ac9b5a3f1b8d17c30c9952e2

Manifest digest:

sha256:dac5c0b0cf6f94cafb4cf04cf1485d4860f814ae7000c9ef75331505b9cfa11b

Size

77.22 MB

Last pushed

3 hours ago

Vulnerabilities

0
1
0
2
0

Support

Active until Nov 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:10-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:10-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:d404c436058d9f0a644c05a869416c0f5603383f2532778bb662161bd54fef96
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:fae84746c16ba89390a148d6d1f9f19074846835ea663df34f15d4fac76e22b9
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:8e8825e33346cf3cc1e9246adc4d357ae5b194cc7ddf386454c1e378b19e4188
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:07ef2081ee04a8bb1ace03c33220cc650c14f81a3feb2c5ef38cfdfcfcb7a01f
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:e730e273ed7e04b838e035446f60a5480ebde361e074611ea81eaf7b84a8531c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:c68ab839bc0031885c30c3b14d50eb9f9fcb01ce5ae302502929334cf4bf72aa
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/aspnetcore@sha256:f92dfac3ed1fe32bbb9ade5708cdb8c17da7960b868c0bd63c2c66bf96212975
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:a9f4fec629cdf62c9abf311b9f301012086c8604e0aba6d27050ae682bdd7be5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:0cf4f7f43052b658fa96b9d68e072306c76ad89d67f02a774317188d44b6eefc
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:1389ff07e852d9074e6c917298bbde34aba0adf90ed15c6ded83b86bee818d2a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:a19c3fb28dd4077c3d78c0602435f88421231862aac08441a2cd0afef20903ae
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:bfd507656545be297eab1d62fc1c9a792d86e8f627576cb3fc51e23f093aed8e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:2fb3853e2a4ccf4f6342de90c92edcad8c9d89ffac8164bc96b8e9340d0e8129
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:fa3f52abd02da38f7b42eb1daed598b7f65da84146a98fc1f3bef34790d5fdb6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:1eed7b76dc0850d4452433a3ad52497bba4ad4331a8a987e094d73fb6da40243
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:596aa702baed1249ac850ce773c0678800d370ac85aaea51cdc61dcdd72765e9
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:61c023b6f02e9ad048aae60ae37d5b5b16e8c2ffe7a549aede45ed6e2708c86d