Sign inSign up
Calico Node

dhi.io/calico-node

Calico Node 3.32.x

CIS
linux/amd64
debian 13
Tags:

3.32, 3.32-debian, 3.32-debian13, 3.32.2, 3.32.2-debian, 3.32.2-debian13

Index digest:

sha256:5882f2883afecdec3b332e91f33401d7a0e82ab28d2e628b32376f8d52a89524

Manifest digest:

sha256:34fc239c9e8fe155deacf63c8872d0191526b78f85f72be886d5ee6bfd81e51a

Size

58.06 MB

Last pushed

2 days ago

Vulnerabilities

0
0
1
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/calico-node:3.32

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/calico-node:3.32 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/calico-node@sha256:3b2895f456163a9933d482fe548d0d239f7e1f8ac5327d27fa51e0e9aa76668c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/calico-node@sha256:f8ed5128648542277a702fe113e6753b04b52d4c69e551fde7a44950f304c8ee
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/calico-node@sha256:d9f94993754a60de5ad8668456a80ab704292ee2089ce16e828887e88fedd3f2
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/calico-node@sha256:18421e29000f38df557b16312823b06a6e6055c58650c0a59685ad0e9645c975
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/calico-node@sha256:f6cbbc3d0bc9ec68224815a436b36567363d1b965123433a7416c7d48daf69d6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/calico-node@sha256:43e326318e6d63666717f84dace0c5d754f64be5201436e87fec03a598889a82
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/calico-node@sha256:5e59528543ce6b61d6e67827051ce3cb6b5da5466c32e4c1bde807a01b073fb6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/calico-node@sha256:3b32b89e5f996cc01cd67eecdbfd22c29fb46642ed4df2850f21889e8e0dc726
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/calico-node@sha256:8985a902c9b5e48c7c33d8aacb18f4082b47798bac80ca882ad00b9a35318ff7
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/calico-node@sha256:59724e66a98357a4766c331a4b638cf91a6692e47b476b9918dbd21aab8ce096
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/calico-node@sha256:938ef1fc968e01f09d546ed7c1044979ea60defd2c0aa71d22a27f1af307d1aa
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/calico-node@sha256:d470d141cfcb44e1d53cef0152583bcc2559223d835010e1a49fbb1dbaa34ef6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/calico-node@sha256:6d411f52359e7542f9a3b7f742809a0f3501ee7ddb259c817ee4d463528b4441
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/calico-node@sha256:30fa90b0d10e46fb801d800d38859fe570120fca2f6c073cd969a7f9fbf55748
SPDX SBOMhttps://spdx.dev/Documentdhi.io/calico-node@sha256:58d1bcbe529c683e5fc57c9906434a1ad968d65701ca493c9415d03021c3bdc2