dhi.io/awscli
1-debian-fips, 1-debian13-fips, 1-fips, 1.46-debian-fips, 1.46-debian13-fips, 1.46-fips, 1.46.1-debian-fips, 1.46.1-debian13-fips, 1.46.1-fips
sha256:d9fa51001387b279498c9cba27126813de4c8fdf2bf32a6192b051831df33b97
Manifest digest:sha256:056f2f749d718389e398060b65be9193f88f9cb1df4b7a9763bf27d11c62a113
Size
45.33 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/awscli:1-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/awscli:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/awscli@sha256:1d005b639016ca9299e4378d01a8760662a12539caa356d6806a47acc5248916 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/awscli@sha256:c68881c04f65c9482db540d93df4cc14ab4b4137c2d454e2b4269bb8630ba769 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/awscli@sha256:e2114a7a3bc4c67c09a13f2f55586c9546ba8d239aadcf4a6e8462dd2e62f617 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/awscli@sha256:99a8e973b86f4461501040b6241e01ebec4022775f36a3c62572853684718cd2 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/awscli@sha256:8725dda088b07de5130474950aa1567b518bc6be5833460634958bb1e0f2a57b |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/awscli@sha256:85ba2119e17aa5eb51f8aaf85a50b65d1b4706bb475ab5f418b09fe3000149d7 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/awscli@sha256:63de5aadddcad4fdf6dca6aa9bb017d8a2f06ea4153484aab637cbc74735d8fe |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/awscli@sha256:a59763b7bf6d95a9176051573f1fb71497c27c82ecb6c0ae542ee7f1f77cd720 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/awscli@sha256:66082e3cd1182da2c0eed4c5641da8c52e858494e6b4fc12d45215a9dfe6ea5d |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/awscli@sha256:070f1cf8e905e4e4f1e2050ae8cc163904a59addd7d9455f577d07ff0571b5a4 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/awscli@sha256:7b4bad048896a1dfcd159c688f800513a76be45d3b9518470bd72febeafc99b2 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/awscli@sha256:1034e609f8cc156bc464eb15c5dff0cd166f899671d932d36e1588f472b0ec5a |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/awscli@sha256:fbffde5cf31790a50539b5361edda32b7c8986e1d3a729113b8b6930d12be2e9 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/awscli@sha256:a0ba0402bffe125a7d3a72744c385f4bd1d2517e4b26944714c62b8c3d388b97 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/awscli@sha256:76e998f005e5d14327b0b7094759d72fd06c81f3e409597f3cd7f178d2340eb1 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/awscli@sha256:dab59856bb08a46c5daa5ff133917901302012b1365bd56d9d6dd54d39ce04db |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/awscli@sha256:7de5a2784202e8218f9ae64771916880ded7b214c156c47d049bfa6469115a94 |