Sign inSign up
Calico Node

dhi.io/calico-node

Calico Node 3.32.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3.32-debian-fips-dev, 3.32-debian13-fips-dev, 3.32-fips-dev, 3.32.2-debian-fips-dev, 3.32.2-debian13-fips-dev, 3.32.2-fips-dev

Index digest:

sha256:aecaff32016cc36cba98dbebfee224b5b218f4bbc5f45db90c949d14fd8eb428

Manifest digest:

sha256:c0c33655d988739484b0e7043c2ce48a673c4d5ec17675f0c8577fc1d4bc3d84

Size

97.49 MB

Last pushed

1 day ago

Vulnerabilities

0
0
1
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/calico-node:3.32-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/calico-node:3.32-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/calico-node@sha256:bf6bd489e124a8c836653102c1a1156b9a3aedf076225016ccf07a4a23e77d9c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/calico-node@sha256:8aacfe9331a57d10ea6a96e5d7e98ea3e35558ab347c7acb13891325973ba573
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/calico-node@sha256:7f88f0d5d77121303f7ab044b41333f788d7a70d5b114356e164c57969aaa86b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/calico-node@sha256:46da658d3d4ef5f4fbb47bd472a806ac9700a940a7c2f89ecf7b73da79c7ced6
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/calico-node@sha256:6d9b45c526aecd1a7d4f8d21172e1c499939383724d36cc979738a1d91b03a10
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/calico-node@sha256:fedb0658a5fb44c697a38dbe14a0919ba0b39543131c3503f8f952bccd149f24
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/calico-node@sha256:699f5e536177394a290234e045d7cce581ed709bed4944cab53c65fdb297672a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/calico-node@sha256:985df4c40bf958ff46db6126a015acc2bf0ca91076d208bbbee93a2774530af3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/calico-node@sha256:a1b436c95e12e6a6cbafba212b9f7d0a99325c2f70c571a610bc6e6e6f9d1025
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/calico-node@sha256:932911dd91f6f4f96a8f75e69715f41cbc7fbe2015dcd5477dd794ae3a0ad8db
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/calico-node@sha256:e9e4c3330f127025f66be4fdc57478eebbe2ac0a3d6288ede1ef06f66e48d774
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/calico-node@sha256:585859dbb383df7cc1a7dd76fcdbc80e1f21ad425296c99b8230e6b7111be783
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/calico-node@sha256:37bc10817dced922a697cce8e7052fc4d261a4a332b79438fe65992733f797b1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/calico-node@sha256:05d32cf42ba0951d892d6b0040672625fd734d5d5f6e578285ee8006854d308d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/calico-node@sha256:8a3cfa8a0c95bc39309ac405236056609328fbbfaf65c1069d8b799a27a20a91
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/calico-node@sha256:58ba84566ad4b97e517937c8e003a0476eafd599e06fba9479fc658d1a9051c2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/calico-node@sha256:860191acd3181b9deb3010662871bef4ce5a0f724e74a526a38a3551795802f6