dhi.io/calico-node
3.31, 3.31-debian, 3.31-debian13, 3.31.7, 3.31.7-debian, 3.31.7-debian13, v3.31.7
sha256:6e90ce929c049ae2a5ca79b6088dc3b20cfef754e41e09d9b4d42303b6b4c7fe
Manifest digest:sha256:f1841a442707f4b639bfa6dce2a22059c507ff64a7b7bd1b5df97570301c006c
Size
56.08 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/calico-node:3.312. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/calico-node:3.31 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/calico-node@sha256:6cbb97da777dfcbd46014468f5ee1fe46918e0ef9b290c45472b5032e6fd2e28 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/calico-node@sha256:f5b2e86c80ab77c8baea56f3f315546063a1c04538df45b6d5ee482d8ce6b73f |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/calico-node@sha256:342082f5773d5c2fc8a003f8f6c423c0ee4617521db2b19567d10eeda29884eb |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/calico-node@sha256:007464d444a2816930f63a0d951e966fbc68e8cb5328fc2f244a50530b5b014d |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/calico-node@sha256:bfd535d6f82310e9ceddedfd14b7e1eb67303ca9672b9bdc120da33c814aa2c5 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/calico-node@sha256:1fc862eef3bded9fa218e412b95f6bdd241cf064114dcfdeb358d2b17f8066da |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/calico-node@sha256:4a7e783e09f8ec84b4dafdf2542c712a7d8fb962324038309333accacb0f45cf |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/calico-node@sha256:b433c9fcc6ad8212fd0f7df54b3c719260114d763968af6a5346e183d9cc5e5b |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/calico-node@sha256:5c5dfcc9c45729ea04ba678b2e54c2f8dcecbe63d8b0644cb39e31923f00f067 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/calico-node@sha256:432bea28381d2ac8e4f108808fcb833e6c1f1e7a9d5894a1f842d9b2f7f60a10 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/calico-node@sha256:b58fa2d0e0516a3e7815aa6744033c7318a0ff6c24b3c9e98b3e97e393388b60 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/calico-node@sha256:b006be9ce577ce6d646e2379ad555f04bfdc8b48eac2f8150f6f58cfda0184f4 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/calico-node@sha256:4fb1980144871bc80ed44482ff01c44d55933f0eedfbd39b423dc2d5abbd12c6 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/calico-node@sha256:39c95392f98b2be5e61c759fc37e3356c0a2b4c0fe3f3f8cea4f9976ea66f54f |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/calico-node@sha256:cbfa62463efa169dc9a18c75bf1e2e0d24068a00f2ebb1eae3574a4f3ffce712 |