Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 10.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

10-debian-fips, 10-debian13-fips, 10-fips, 10.0-debian-fips, 10.0-debian13-fips, 10.0-fips, 10.0.12-debian-fips, 10.0.12-debian13-fips, 10.0.12-fips

Index digest:

sha256:27f059b0c0b9d9b7fea138418c832b9729819543350ed31099099ab7ad56fddc

Manifest digest:

sha256:e4dad71fa8f34955cc1e2a9e93aa46e34d6537e3d9a753870a0f94f5e7dd5943

Size

63.12 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:10-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:10-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:3acc0509acb13b9ee7eb04bf8c050860aaaeeddb114d69fd6fc2b60081d4c9ff
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:b4aefa538e5aa1c242a0c801dc498eb6a778754891c8235f0ff8eda2f3b72e19
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:6e43796c7ccc48ebac87545589626ae4649f9a130cf676a3cf4c7b17041fbb1a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:d5b7a1a1fde85d9e0af833f355820f19734eba9ccb781656cedf82253410bfc6
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:c17873e0a658aa3a419e79c78e4366174b36996b5e1c135ec8e883a2d51ec3c2
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:ca96b74e4295b53ac9b98330c4aeca4923032d9fa281a4fbc187d0a7a9c15154
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/aspnetcore@sha256:e412ab8fef7614af0fe78d612a3f3bcd476b45a1fa05e99b51b1157da4c44902
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:426f7f55ec657bcd2cfccb1cf0664439c0b5fed2aea36f32f536b6bac1e7f6d1
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:876167819babd0f16589aa239cc889338843a2a97ccd837249f1af1cd9a9e74f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:05698881cdfb96f1657b17e8d3cb2c15bed95827bb705d3e7587035ae08508b9
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:9346df0f53de26a58b293bb77d5d48b3199dabed422473e97ed0f85928b4a2e7
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:fac8710a0316b0b7f9e1e01aae7dfd7f8daa1e87a49b5dfccbf3692e61dca058
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:fd3e380de21d18774af103492b53c99d2846a7e13de9abb444c0a51492479504
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:fbd1e1101522903af258dfb1c52dbaf5496c5566899afda1478b43c13b28a390
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:6e6dd4b28545c747abd89907bd8308f0e9d5ed9cd14c4dfd2fa44e9c59cfd511
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:4dbeb63a2daab9ea9db80cd7e0c4122e78f199f20ee278e386745bf1b727c29a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:42bdb0825ca3602cdcda11cbd0ded001d83bfa4a4af989d80298f7b4e5d2c265