Sign inSign up
Calico Node

dhi.io/calico-node

Calico Node 3.32.x

CIS
linux/amd64
debian 13
Tags:

3, 3-debian, 3-debian13, 3.32, 3.32-debian, 3.32-debian13, 3.32.2, 3.32.2-debian, 3.32.2-debian13, v3.32.2

Index digest:

sha256:20ee67b0800b3dc5c9be134a8b3ed9ad89e7b4a4caecbef896a65f59355b79ad

Manifest digest:

sha256:303a5d56cf14e56f1f2c528c47a79313f1e8c07fd906e2793493d05b8634f0d8

Size

58.07 MB

Last pushed

7 hours ago

Vulnerabilities

0
3
5
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/calico-node:3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/calico-node:3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/calico-node@sha256:364b504a0046dc1321d2a686aae85beba66c0ea6eb532214c7bdd926b7523a79
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/calico-node@sha256:c272e21c97f83adb804ce1fc9ac74f202491a79b66b0d3d14838582a98796e98
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/calico-node@sha256:ed9d3b6d04ed18939ce6dbacf639e7cb47aaa3d6d683cda9c28eed714345460c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/calico-node@sha256:04d417e712b1e7363668d3da1ddf696d8c7fbe9ba9e987d0e457818a36370bbb
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/calico-node@sha256:aa423f08e56ccd9ac02faf545bae3f91d76f5ed69df6e07c0a49b698570206d5
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/calico-node@sha256:59011db36daa4dda94ebdf4c8b51788418211cb6789ab8b8f10b36e7ee71196e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/calico-node@sha256:c670fc23ccfb127dacaf4f0ea4e9d1b79ad0bcfd7d3a732a91ce0b646d3c6993
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/calico-node@sha256:a97387ac593499c04a39f1e622c76bd9962e12ee5d2a4013910f9d314defd42c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/calico-node@sha256:755ff9112b61589708b92356774bfb31aa21182c3754501b70a1b915742ff8be
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/calico-node@sha256:2b6747aff961f9b3d4157cbcd876a4159ce0a8166a4336ed523253646b5e63e3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/calico-node@sha256:69c6f412d0340b9c50e3e20943d55644ec830d77bd9d3eb7da900ed760c2328c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/calico-node@sha256:9362dce8ce9593886dc7424597ef1227786f4db3432b0f65999f20dcb78340cf
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/calico-node@sha256:e313a02f3f9f1153c3c504c9b817cd0ed55e5905573585f957adac9c7de8af66
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/calico-node@sha256:506e52b008a40a47ab28fb016d4730e25d25a6c64011aecb853e86b9b08f9a60
SPDX SBOMhttps://spdx.dev/Documentdhi.io/calico-node@sha256:939daab966961c14f8324d1cf238181a8cb696cc5fd381f1b72b4556b36409c4