dhi.io/calico-node
3.32-debian-fips, 3.32-debian13-fips, 3.32-fips, 3.32.2-debian-fips, 3.32.2-debian13-fips, 3.32.2-fips
sha256:430c36f290553c162eaa476e6590234909c461c6f2a2a21aa02f51f6f8d79008
Manifest digest:sha256:aecbf9c4cdf5cabe9a0e79bd6f1e344dbfb27c08a33e91d587377941efc24505
Size
60.19 MB
Last pushed
7 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/calico-node:3.32-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/calico-node:3.32-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/calico-node@sha256:1f142d8e210e52820db9325d502a4d2d994019ec2aca8353ecb2b576ad0171b8 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/calico-node@sha256:968e21659b37538f1b12ca79dbdabdfbb09b9af9d680a144a688c2eb57a28ef2 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/calico-node@sha256:fbc42b417a52284ea993828b136e0826c0ae3598b4d06add637139da8e05a6c7 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/calico-node@sha256:4510949be467d4bb8766c64f94445e98268d66340f25984e669c2c31ba4f06f9 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/calico-node@sha256:99a1ddeec8b486c98461ead8c1a8593759b63c5aee547b3b5c25a8cb0a2042c0 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/calico-node@sha256:6a5a89a6d16fa851da7297ea1fb79fa5d8c33c69b41b3edf24636199aee950f6 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/calico-node@sha256:51e7eab11879e9a1c9bfa49ae550ddf1a47581326f5cc886cdf8d7947bdd1187 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/calico-node@sha256:cb0678f3229bd96654df2f726152fea55895e1b498261acc5ea039eee0ede8ba |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/calico-node@sha256:d35cc913774a84b8b2ea18cb3d44ce6005154411b238e6f8fb6f180ff2dafe23 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/calico-node@sha256:b956318430fe1232d386ed4c16bb171ce7d92ec68eec5ca2e52e5b8b83f9ad47 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/calico-node@sha256:47a5761f1c483cfa7b131b93d990d3b676074be0dc2aae09e6a20ed4661cc3cf |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/calico-node@sha256:0238584e03df38ff04098c07b10c60e11543ba3a4516a4fb6cd491f27164c354 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/calico-node@sha256:b1a137d606503445b17d9417ed2d5fce2bcf477c3bb6b370c3a5b68ef3fa4302 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/calico-node@sha256:4cb7425490bb2f98c31a8e9c63956ba87f8aa22a43cef34591cd3059e83d4456 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/calico-node@sha256:a083e945799f0a4b95d13848650182864f3b1ef7ade4fc80d74db04500f1f7f2 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/calico-node@sha256:79734879b40197015fcf2e8add3ddc6f75e8a37c3d11f4babbe3929387ffa6d3 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/calico-node@sha256:2e24c2f54ed53c7901b0d4cde770b26230cda6fdf47c6a9e46c4da4d3d13e640 |