Sign inSign up
Calico Node

dhi.io/calico-node

Calico Node 3.32.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.32-debian-fips-dev, 3.32-debian13-fips-dev, 3.32-fips-dev, 3.32.2-debian-fips-dev, 3.32.2-debian13-fips-dev, 3.32.2-fips-dev

Index digest:

sha256:82402674cfc4b9a01eda51835633e2ee9cb2309f375e1870fadbc76e0b559be2

Manifest digest:

sha256:194bef40c0cb8199eac7884eac877a5c2c445ac6a16c1a252d7aad090a8063ab

Size

97.51 MB

Last pushed

13 hours ago

Vulnerabilities

0
4
5
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/calico-node:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/calico-node:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/calico-node@sha256:5d4a72cabb8276970d53f84fa9866a4c1572404f7e34adea1265b25d1baf80d9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/calico-node@sha256:d658828fff9597a68b61ceabb91ce6f635f7bf3007c8331331ace4c052361427
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/calico-node@sha256:c44ba75da755eb2ee15356b063f05ca829025e66fdcf6af377a45643bb2bd329
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/calico-node@sha256:79660e8cc5326b7701ddf87a679a064945662e8c0631fa00d8afc43ac9116fb6
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/calico-node@sha256:ff54a991536a9b313446fa1b51c399dafe228e020d553c70406d8c3a02a12e17
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/calico-node@sha256:7c5549f1cfd4d80d0d2cf8ef2e1ed75bb81127f08ddc97a62b1d5f46e2c758d7
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/calico-node@sha256:5e61753ffe28a0275006b9298c23db58372cd18002c2974f23804f249737ec6f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/calico-node@sha256:03bf1526fb39f2099933ed1f2ed2d70a1287afc16970947a6c40ca628be8ea7f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/calico-node@sha256:3d8efaec4ee7f09bd1f9fdb42e1ceef29e3e08e75b2ad1d7b7e28e5792a9b4da
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/calico-node@sha256:194f6578334fca845d07c1104daffae1f7cd19360c47b5951368dd57cdcddfd4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/calico-node@sha256:4c9eec7489c7e1322c7d4b3d3fadadd7f182732d287c799f4724a49ed6b48cb5
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/calico-node@sha256:f09949fea4e4a88a8c14e44d57eed2cc5975f1faeb2ea35bec1b253d37258fc1
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/calico-node@sha256:fc2a0e474a7fb62b6a59eae8fb7a4d7130fb2c0b530d143b27432cbc08d0add1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/calico-node@sha256:850a0684f3689af512142c08ac64b341408a1a0a660d6cc8892ccc9edb979e39
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/calico-node@sha256:cd883db36af3ebbb3041f015b5a39d4f5f1c47491a10d4bfe1b4e5cbedd0139d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/calico-node@sha256:c426b55396c3dd46fdd90cea5a56c7fce8d3b8f3a93f0e2c763f1cd72ae3867a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/calico-node@sha256:49bcd6ad6adbf27a5734ccc396a85a64cbfb73252bd453d83b8a8053365cc0e9