dhi.io/calico-node
3.32-debian-fips-dev, 3.32-debian13-fips-dev, 3.32-fips-dev, 3.32.2-debian-fips-dev, 3.32.2-debian13-fips-dev, 3.32.2-fips-dev
sha256:aecaff32016cc36cba98dbebfee224b5b218f4bbc5f45db90c949d14fd8eb428
Manifest digest:sha256:c0c33655d988739484b0e7043c2ce48a673c4d5ec17675f0c8577fc1d4bc3d84
Size
97.49 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/calico-node:3.32-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/calico-node:3.32-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/calico-node@sha256:bf6bd489e124a8c836653102c1a1156b9a3aedf076225016ccf07a4a23e77d9c |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/calico-node@sha256:8aacfe9331a57d10ea6a96e5d7e98ea3e35558ab347c7acb13891325973ba573 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/calico-node@sha256:7f88f0d5d77121303f7ab044b41333f788d7a70d5b114356e164c57969aaa86b |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/calico-node@sha256:46da658d3d4ef5f4fbb47bd472a806ac9700a940a7c2f89ecf7b73da79c7ced6 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/calico-node@sha256:6d9b45c526aecd1a7d4f8d21172e1c499939383724d36cc979738a1d91b03a10 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/calico-node@sha256:fedb0658a5fb44c697a38dbe14a0919ba0b39543131c3503f8f952bccd149f24 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/calico-node@sha256:699f5e536177394a290234e045d7cce581ed709bed4944cab53c65fdb297672a |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/calico-node@sha256:985df4c40bf958ff46db6126a015acc2bf0ca91076d208bbbee93a2774530af3 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/calico-node@sha256:a1b436c95e12e6a6cbafba212b9f7d0a99325c2f70c571a610bc6e6e6f9d1025 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/calico-node@sha256:932911dd91f6f4f96a8f75e69715f41cbc7fbe2015dcd5477dd794ae3a0ad8db |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/calico-node@sha256:e9e4c3330f127025f66be4fdc57478eebbe2ac0a3d6288ede1ef06f66e48d774 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/calico-node@sha256:585859dbb383df7cc1a7dd76fcdbc80e1f21ad425296c99b8230e6b7111be783 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/calico-node@sha256:37bc10817dced922a697cce8e7052fc4d261a4a332b79438fe65992733f797b1 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/calico-node@sha256:05d32cf42ba0951d892d6b0040672625fd734d5d5f6e578285ee8006854d308d |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/calico-node@sha256:8a3cfa8a0c95bc39309ac405236056609328fbbfaf65c1069d8b799a27a20a91 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/calico-node@sha256:58ba84566ad4b97e517937c8e003a0476eafd599e06fba9479fc658d1a9051c2 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/calico-node@sha256:860191acd3181b9deb3010662871bef4ce5a0f724e74a526a38a3551795802f6 |