Sign inSign up
Calico Node

dhi.io/calico-node

Calico Node 3.31.x

CIS
linux/amd64
debian 13
Tags:

3.31, 3.31-debian, 3.31-debian13, 3.31.7, 3.31.7-debian, 3.31.7-debian13, v3.31.7

Index digest:

sha256:6e90ce929c049ae2a5ca79b6088dc3b20cfef754e41e09d9b4d42303b6b4c7fe

Manifest digest:

sha256:f1841a442707f4b639bfa6dce2a22059c507ff64a7b7bd1b5df97570301c006c

Size

56.08 MB

Last pushed

1 day ago

Vulnerabilities

0
1
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/calico-node:3.31

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/calico-node:3.31 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/calico-node@sha256:6cbb97da777dfcbd46014468f5ee1fe46918e0ef9b290c45472b5032e6fd2e28
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/calico-node@sha256:f5b2e86c80ab77c8baea56f3f315546063a1c04538df45b6d5ee482d8ce6b73f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/calico-node@sha256:342082f5773d5c2fc8a003f8f6c423c0ee4617521db2b19567d10eeda29884eb
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/calico-node@sha256:007464d444a2816930f63a0d951e966fbc68e8cb5328fc2f244a50530b5b014d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/calico-node@sha256:bfd535d6f82310e9ceddedfd14b7e1eb67303ca9672b9bdc120da33c814aa2c5
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/calico-node@sha256:1fc862eef3bded9fa218e412b95f6bdd241cf064114dcfdeb358d2b17f8066da
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/calico-node@sha256:4a7e783e09f8ec84b4dafdf2542c712a7d8fb962324038309333accacb0f45cf
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/calico-node@sha256:b433c9fcc6ad8212fd0f7df54b3c719260114d763968af6a5346e183d9cc5e5b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/calico-node@sha256:5c5dfcc9c45729ea04ba678b2e54c2f8dcecbe63d8b0644cb39e31923f00f067
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/calico-node@sha256:432bea28381d2ac8e4f108808fcb833e6c1f1e7a9d5894a1f842d9b2f7f60a10
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/calico-node@sha256:b58fa2d0e0516a3e7815aa6744033c7318a0ff6c24b3c9e98b3e97e393388b60
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/calico-node@sha256:b006be9ce577ce6d646e2379ad555f04bfdc8b48eac2f8150f6f58cfda0184f4
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/calico-node@sha256:4fb1980144871bc80ed44482ff01c44d55933f0eedfbd39b423dc2d5abbd12c6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/calico-node@sha256:39c95392f98b2be5e61c759fc37e3356c0a2b4c0fe3f3f8cea4f9976ea66f54f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/calico-node@sha256:cbfa62463efa169dc9a18c75bf1e2e0d24068a00f2ebb1eae3574a4f3ffce712