Sign inSign up
AWS SigV4 Proxy

dhi.io/aws-sigv4-proxy

AWS SigV4 Proxy 1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.13-debian-fips, 1.13-debian13-fips, 1.13-fips, 1.13.1-debian-fips, 1.13.1-debian13-fips, 1.13.1-fips

Index digest:

sha256:01438d815bb908318bd1ad2169504302b4866a37e45f268aece2995604b92c95

Manifest digest:

sha256:a47433b08a50482e8c8a44741a28fec4c2abf1983cfcff54d86643acc420cd05

Size

12.97 MB

Last pushed

6 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aws-sigv4-proxy:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aws-sigv4-proxy:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aws-sigv4-proxy@sha256:0326497cc9598a223423c6f6e18ce94649bb3aa84138c800d02d8ed26d34f830
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aws-sigv4-proxy@sha256:a313d6ff67ab35cf191c62b7c88a0081be42b9067e6168c4cc45a1e3a792f45e
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aws-sigv4-proxy@sha256:ef45bec1ae19cd9fb9a920483e6665214d06fc5c60e109970a49ca61d0a6b75d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aws-sigv4-proxy@sha256:ac0c792e253af8e518904c47cd0ccac3917ffd1db1effd74bed4945311fdf634
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aws-sigv4-proxy@sha256:b3d76df8556cdb9462adb27c0965f0397f2069c02ca7db64c825fc8b713b18eb
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aws-sigv4-proxy@sha256:4f0434e0cf9fe914e0527ebfc2ff220ed1da091d8b7a19a2a02a71901612c6fa
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/aws-sigv4-proxy@sha256:4eb5d89d63d82f97c5c85a52437ba78880f8de8ae328646b32fdd0f42bf8f24b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aws-sigv4-proxy@sha256:ce8481c0625c16903023f610c557c6a18219c7c362e87546e0442b1d6434a562
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aws-sigv4-proxy@sha256:2f8952b233a31fead6b32f087946a3bca9ebf1ba1eb7afbe8638f45aa50c2eea
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aws-sigv4-proxy@sha256:bc1e86ac68fd1b828cbc7c123532baccf110de9ee6c1d7f39ead6120e29bd931
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aws-sigv4-proxy@sha256:21261d32fb4c175de1213e360e9098ec22347d0f9206ef4903e6c7e8fb000200
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aws-sigv4-proxy@sha256:af6d2447e8c09927a5fa2ceaaed430de45e24f8a4c50c8495d84bfe2bd6a6fe9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aws-sigv4-proxy@sha256:4abea05f3f88f2eec15f129336686989ed7f17931636e0c1033a965e940663fc
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aws-sigv4-proxy@sha256:1c20ca46598934f22231d20d7c0fa3382c540c6a76dc0468302fd880fa81f509
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aws-sigv4-proxy@sha256:90c69fef57959eca0a186ed61094256ffd53c37b971383f91bac761d611981a4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aws-sigv4-proxy@sha256:331b388e3515ee6e7f9ea5f45082c07fb964b2c6b6f368338cd18ce467bfabb2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aws-sigv4-proxy@sha256:f5ca9da6b741d9cb50e54a15074293fdfa7b7fc9d631135c61719d0861df3129