Sign inSign up
Calico Node

dhi.io/calico-node

Calico Node 3.32.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3.32-debian-fips, 3.32-debian13-fips, 3.32-fips, 3.32.2-debian-fips, 3.32.2-debian13-fips, 3.32.2-fips

Index digest:

sha256:430c36f290553c162eaa476e6590234909c461c6f2a2a21aa02f51f6f8d79008

Manifest digest:

sha256:aecbf9c4cdf5cabe9a0e79bd6f1e344dbfb27c08a33e91d587377941efc24505

Size

60.19 MB

Last pushed

7 hours ago

Vulnerabilities

0
0
1
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/calico-node:3.32-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/calico-node:3.32-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/calico-node@sha256:1f142d8e210e52820db9325d502a4d2d994019ec2aca8353ecb2b576ad0171b8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/calico-node@sha256:968e21659b37538f1b12ca79dbdabdfbb09b9af9d680a144a688c2eb57a28ef2
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/calico-node@sha256:fbc42b417a52284ea993828b136e0826c0ae3598b4d06add637139da8e05a6c7
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/calico-node@sha256:4510949be467d4bb8766c64f94445e98268d66340f25984e669c2c31ba4f06f9
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/calico-node@sha256:99a1ddeec8b486c98461ead8c1a8593759b63c5aee547b3b5c25a8cb0a2042c0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/calico-node@sha256:6a5a89a6d16fa851da7297ea1fb79fa5d8c33c69b41b3edf24636199aee950f6
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/calico-node@sha256:51e7eab11879e9a1c9bfa49ae550ddf1a47581326f5cc886cdf8d7947bdd1187
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/calico-node@sha256:cb0678f3229bd96654df2f726152fea55895e1b498261acc5ea039eee0ede8ba
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/calico-node@sha256:d35cc913774a84b8b2ea18cb3d44ce6005154411b238e6f8fb6f180ff2dafe23
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/calico-node@sha256:b956318430fe1232d386ed4c16bb171ce7d92ec68eec5ca2e52e5b8b83f9ad47
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/calico-node@sha256:47a5761f1c483cfa7b131b93d990d3b676074be0dc2aae09e6a20ed4661cc3cf
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/calico-node@sha256:0238584e03df38ff04098c07b10c60e11543ba3a4516a4fb6cd491f27164c354
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/calico-node@sha256:b1a137d606503445b17d9417ed2d5fce2bcf477c3bb6b370c3a5b68ef3fa4302
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/calico-node@sha256:4cb7425490bb2f98c31a8e9c63956ba87f8aa22a43cef34591cd3059e83d4456
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/calico-node@sha256:a083e945799f0a4b95d13848650182864f3b1ef7ade4fc80d74db04500f1f7f2
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/calico-node@sha256:79734879b40197015fcf2e8add3ddc6f75e8a37c3d11f4babbe3929387ffa6d3
SPDX SBOMhttps://spdx.dev/Documentdhi.io/calico-node@sha256:2e24c2f54ed53c7901b0d4cde770b26230cda6fdf47c6a9e46c4da4d3d13e640