Sign inSign up
Calico Node

dhi.io/calico-node

Calico Node 3.30.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3.30-debian-fips-dev, 3.30-debian13-fips-dev, 3.30-fips-dev, 3.30.7-debian-fips-dev, 3.30.7-debian13-fips-dev, 3.30.7-fips-dev

Index digest:

sha256:c78fa0c102c75c4158683813e2b66ae2ce386f397df528904b24f051a4df175a

Manifest digest:

sha256:b76bf9073f6192d325df4aa004bc4601c943e9c5a5f2e0be2005efaf4435ff8e

Size

94.03 MB

Last pushed

17 hours ago

Vulnerabilities

0
4
6
4
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/calico-node:3.30-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/calico-node:3.30-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/calico-node@sha256:4d938ae984d5e7f3516eb34d170ccdc1e4abf3b7c5efdaf1e262f637ed2e536e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/calico-node@sha256:334f98e157df86ddd185786f1c6a52162adc81a039e10967a0cb7a722bf010d9
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/calico-node@sha256:bac9dc396424afdb2eefc26a998a415b7e25cf6f17b3ab6390f98547c0de67c2
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/calico-node@sha256:bf607aab5fd295f5ba4fba97d48c669fe759c46c245adb2273f6b31ae2225614
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/calico-node@sha256:913ce50d5d326073e4c306fbf6b45f6c518c97412ca9baa94f288cc61ea19146
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/calico-node@sha256:7360942eadb28ae4bfff043efbc57a4257971499c50c9697e6c74cc3e6113401
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/calico-node@sha256:caaae1f25ba4f7e7e03569091a1ae11fad554f710faeecdc2767a089c062a502
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/calico-node@sha256:f6ecc9b9e7c5b8ddbc101273a1be0c9bce7f3aca140c02735e694719f6872daf
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/calico-node@sha256:9d2fc163dcd166957301ed6735c64a42994a5071a507977c5a4bbd37e4fc997a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/calico-node@sha256:73a59f84af85936a1a21074dc11facc4b0e1bebb22ad632d3a9cfb458a83123f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/calico-node@sha256:1ee165ba8e620c38957ce36ac2710e4ef01941dfbc09d9a4f67317516e802b95
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/calico-node@sha256:097329ed0cacfffa08e9cbfa91fbb731f960c71bb7fec2879d45e0c75a8416ab
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/calico-node@sha256:d2f992ee469339ce4dcd4cabd9dd9bbc9dd42f7866c2eb119ec243b3fc69f9c1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/calico-node@sha256:912eb1b01cc7fee5af62129be83cc0b5538fc241f814e602f59f59d3cd6dec2c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/calico-node@sha256:9c469a25aefcc18f2c406762e1baff095efe0614c16222031fb775c3e32e29a4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/calico-node@sha256:e116e0b796659747bb9c854184c7150370e826ad210b9180eac88a3e4aeea728
SPDX SBOMhttps://spdx.dev/Documentdhi.io/calico-node@sha256:58b724bd8b866b6d658b0e5b98a1ffbe4d824f6e0e4d8d93bb1e1476fcf62710