dhi.io/calico-node
3, 3-debian, 3-debian13, 3.32, 3.32-debian, 3.32-debian13, 3.32.2, 3.32.2-debian, 3.32.2-debian13, v3.32.2
sha256:20ee67b0800b3dc5c9be134a8b3ed9ad89e7b4a4caecbef896a65f59355b79ad
Manifest digest:sha256:303a5d56cf14e56f1f2c528c47a79313f1e8c07fd906e2793493d05b8634f0d8
Size
58.07 MB
Last pushed
7 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/calico-node:32. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/calico-node:3 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/calico-node@sha256:364b504a0046dc1321d2a686aae85beba66c0ea6eb532214c7bdd926b7523a79 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/calico-node@sha256:c272e21c97f83adb804ce1fc9ac74f202491a79b66b0d3d14838582a98796e98 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/calico-node@sha256:ed9d3b6d04ed18939ce6dbacf639e7cb47aaa3d6d683cda9c28eed714345460c |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/calico-node@sha256:04d417e712b1e7363668d3da1ddf696d8c7fbe9ba9e987d0e457818a36370bbb |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/calico-node@sha256:aa423f08e56ccd9ac02faf545bae3f91d76f5ed69df6e07c0a49b698570206d5 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/calico-node@sha256:59011db36daa4dda94ebdf4c8b51788418211cb6789ab8b8f10b36e7ee71196e |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/calico-node@sha256:c670fc23ccfb127dacaf4f0ea4e9d1b79ad0bcfd7d3a732a91ce0b646d3c6993 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/calico-node@sha256:a97387ac593499c04a39f1e622c76bd9962e12ee5d2a4013910f9d314defd42c |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/calico-node@sha256:755ff9112b61589708b92356774bfb31aa21182c3754501b70a1b915742ff8be |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/calico-node@sha256:2b6747aff961f9b3d4157cbcd876a4159ce0a8166a4336ed523253646b5e63e3 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/calico-node@sha256:69c6f412d0340b9c50e3e20943d55644ec830d77bd9d3eb7da900ed760c2328c |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/calico-node@sha256:9362dce8ce9593886dc7424597ef1227786f4db3432b0f65999f20dcb78340cf |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/calico-node@sha256:e313a02f3f9f1153c3c504c9b817cd0ed55e5905573585f957adac9c7de8af66 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/calico-node@sha256:506e52b008a40a47ab28fb016d4730e25d25a6c64011aecb853e86b9b08f9a60 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/calico-node@sha256:939daab966961c14f8324d1cf238181a8cb696cc5fd381f1b72b4556b36409c4 |