dhi.io/azure-keyvault-controller
1-debian-dev, 1-debian13-dev, 1-dev, 1.8-debian-dev, 1.8-debian13-dev, 1.8-dev, 1.8.4-debian-dev, 1.8.4-debian13-dev, 1.8.4-dev
sha256:8b1e7a305cd62cb07dec94a4712c8d2bbe7981505264a8e2c2f4beab52f2731b
Manifest digest:sha256:1e8de4cab00b38f3fdb610719a9dde2ea0c2f8f932f46dc90133ece6cd0beaff
Size
49.42 MB
Last pushed
2 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/azure-keyvault-controller:1-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/azure-keyvault-controller:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/azure-keyvault-controller@sha256:4f47b7686c408b1229368bcc5b4322445eb5c9935f531a6493c1c118d18b99de |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/azure-keyvault-controller@sha256:ebce2bed843567502297f2aa83f52c5acdc7a5d9bbf6b2d278812476d9a745e0 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/azure-keyvault-controller@sha256:e4fc410b91327136f59b64daa984d84c82c5d0576b98fa0ea8e3ce5ec3c70102 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/azure-keyvault-controller@sha256:69edc6b98159fb84bce012898c69d3d3afe24e8a6425b0b6f765940959d553bf |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/azure-keyvault-controller@sha256:f677a15d9e2d58d51f57fdfbd4d153ef16e827c6a78c2913d511ad72c2e9adca |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/azure-keyvault-controller@sha256:6bf3d368742b63bb7b19817b3c45c9a8af658bfbffc2865fa47fe972d0a6f064 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/azure-keyvault-controller@sha256:f308827bf6f6d001c94ac592130247df7c0439235fa704583d875048cadb9197 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/azure-keyvault-controller@sha256:03e22faef6382af3f5b2b264a77bd76490a6e6bef869e85e2f965b0d7e1c6791 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/azure-keyvault-controller@sha256:c489a0608d748cf03031fd716f44dc8a9643834fbf5e3d89a5b2105729348122 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/azure-keyvault-controller@sha256:98687e7f5a38eb31ad0f8c1b7216d71c9437c60cdaccd166dc481e0a5655341a |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/azure-keyvault-controller@sha256:4d0a7fe97b420cc0654050f50f91003e3eca03d81aa867fe2e8c3289fdc2dbb7 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/azure-keyvault-controller@sha256:6ebaf1cd7dec29015e3f0de2c5b3b475e0f4e419449cdee334e9197896a4f600 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/azure-keyvault-controller@sha256:5493b982b48879570be342b061e98472fadda37426806c239b0000ee373bf3a3 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/azure-keyvault-controller@sha256:566605f19b3aa0ddd833e6274e69a4e7299dd19ae293b1c4568d98231bbf8df7 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/azure-keyvault-controller@sha256:6d3660399dae172b47257eb0f1b06f26a7fcae149980a7252d5330d5b397fa3d |