Sign inSign up
Calico Node

dhi.io/calico-node

Calico Node 3.32.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3.32-debian-fips-dev, 3.32-debian13-fips-dev, 3.32-fips-dev, 3.32.2-debian-fips-dev, 3.32.2-debian13-fips-dev, 3.32.2-fips-dev

Index digest:

sha256:cad0e44486be07a29192e0ea2cecd2e797c325c884404a2d2603e13a596f72f4

Manifest digest:

sha256:67ce182041418727f7ac3fa41b75214639dd23c158da2001f846d2960f17a760

Size

97.49 MB

Last pushed

21 hours ago

Vulnerabilities

0
0
1
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/calico-node:3.32-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/calico-node:3.32-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/calico-node@sha256:87c3140a932d659c9028e11fc7af11aa10c2be7de4eb1661e70bf76b957b8719
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/calico-node@sha256:66f1cc0ecfba1d8e8767eabf1e7c75b2d3ca3321381f7fb0b75480262b97da57
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/calico-node@sha256:256f53791f6b9627c504783a61c5bcb85c26e3740d3088bac3b4cc01284449ad
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/calico-node@sha256:877aa7ed26664e83fd3b476240aa530a0a5792757eb7f3214526d0f796c74145
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/calico-node@sha256:6db180f80ab31008f45376029f1e18f78e06f6dfc953510317b6864b67f98486
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/calico-node@sha256:56a20151b2337cdd659f063f2ab008371c02f62b8df1aaa8631d43ee04d8f0fa
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/calico-node@sha256:54da030146adb0b529c0b996ea691520b0257913f1936222be4131a774cb31a4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/calico-node@sha256:c70faf685d237415f1877bb1477a402871805b02d296afddf16f0f0d4abde0c5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/calico-node@sha256:ccbfeb9547fd49eb7211774d1460a6ad3736f567271a5712bcf29194f3f68dab
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/calico-node@sha256:bec0efa194a605d4d4af70afc16b2c78106e89c892f852a0c7f14547fc549a50
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/calico-node@sha256:0bcea20f84175b2f8cef714ed0ac7c08da6ff70337c2ae3944eca24b76224463
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/calico-node@sha256:7b028ade3d7e218c7ff5c88bbf7eae6b33f109aa074dc46cfd9bf08667fb1c89
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/calico-node@sha256:49460901e0cc13062b86a2e5f8b665b03dd03ab37edd2fc3247b1b3c29f3f285
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/calico-node@sha256:d6a86805607411f43efec21386a63166cc1cf6308feeae0c84f3c60b2d790eba
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/calico-node@sha256:5e98d16e903029c72ad1ed24f8115939b8c0809e2c7507dba35967619b8784ef
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/calico-node@sha256:cc310a130d7380f3cd8c2e17ddc94c39642307677e982aed6495b57dbe5cfc95
SPDX SBOMhttps://spdx.dev/Documentdhi.io/calico-node@sha256:46237605daed76929d67849bb379ab1175cdcd0852a605c1c538e35903382e15