Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 9.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

9-debian-fips-dev, 9-debian13-fips-dev, 9-fips-dev, 9.0-debian-fips-dev, 9.0-debian13-fips-dev, 9.0-fips-dev, 9.0.20-debian-fips-dev, 9.0.20-debian13-fips-dev, 9.0.20-fips-dev

Index digest:

sha256:c33a989c7b36357e9043ee72e85d82e0eb06eef4480f063e5a5cf1869db303ab

Manifest digest:

sha256:5ad9906ffba53221777bce9f06a253fc608bb3dc62f16d8a034a5d25c4c0e2d0

Size

75.31 MB

Last pushed

1 day ago

Vulnerabilities

0
1
0
1
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:9-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:9-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:65bafbb1bec0fc55dc973a9600bf98b41f5e669289ea9b35c8851ec9706bc180
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:39328b7020ea05dbf97e66b046dc98222277ec545e29b11e469eb569abd6769d
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:2bd9aac3b924c36e8a3f6fb0031e707670eb353295accaaf3b2868faaa433966
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:135a818b8f23bc69916be360d89268e1aed73173f80b974ef7435cec10b5b0e7
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:3adba885bdb33f17b9cb45a43bab2f1ce53d8f4582d094ecc0158fcdd6151700
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:d59c6f3c7d6a3b9690447e3e9f8369e841fcf47603752b772249dba86996ca52
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/aspnetcore@sha256:8fd96e484a27efa33b24f64c99623410665b67caa36e3128e3209a20fa3a720e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:e47a97c690800261595b364410a8a2da855c60ef800c2d39f75a50502df77b77
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:b0323c1a31fe2004c6e0e6ffec08e9cbdd81da63d72503918affcbd7b4166f98
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:173e48e141cd37cda66422c56da90bae1f2f0667de8a773b89f5d701da67ea28
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:4ecfae1eb565cd811105b942a4b7c23f0f6735246af48570a7758c1b5344c66d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:760a6b55de51e7edcd4f57016ac0583f8492fb06da81008ee9fed4d3e65084ae
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:2083262968a1a1be50df2a86bc1b68499a80a8e646983df53d72594ea55dfcfe
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:03ac9f8d623b77f68c0d805bf5ffd14f1473eb14d650136bf54b89e5385f7959
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:d056dbdc65ba1a44d81a3409862e1c6b76a38ef61f53f2543a31a6e7e3ac8f61
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:06de0360e67af4e318ba00bef7f365b10b6f4570cca3388063d47a0d1cf13cd0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:7afe06477ce43c67c6e39b31e4441b3ab5c25507d376645263b185439de53e28