Sign inSign up
Cassandra

dhi.io/cassandra

Cassandra 4.0.x (dev)

CIS
linux/amd64
debian 13
Tags:

4.0-debian-dev, 4.0-debian13-dev, 4.0-dev, 4.0.21-debian-dev, 4.0.21-debian13-dev, 4.0.21-dev

Index digest:

sha256:fa5f09d1b84b12031a870cc9faf08a0da7599524072151f034fba8059c980975

Manifest digest:

sha256:32a736c94402daadc1d20d2034633b1171cbf763b192e0ae666b4facf4893efa

Size

225.02 MB

Last pushed

10 hours ago

Vulnerabilities

0
5
4
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cassandra:4.0-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cassandra:4.0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cassandra@sha256:c5e7ead4033f0d4d20542f0d77f0784043c5fc6e69d53d5e0d7a1c37aecbeef9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cassandra@sha256:93ebf9bc33ee69a5a2bfb71bb26415da3e3174788afde08aca099413999d371e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cassandra@sha256:2bc22f7cdbc4c45a56fc286b999d1f32243c06d82322ec9ed52ae59b725ff736
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cassandra@sha256:b97b7d5abb280614e7a5487e3af55afedf8c5c744394896af34a1775ece9bae1
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cassandra@sha256:060e7da416477cc5293bc7b3bb0f29ebb98b4dc403d8f7183ca32744e37ac048
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cassandra@sha256:bd182addc1941865cc5deaa8a0d8916a576ec6e2fcbc3c3253e6aab9f7bda9d9
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cassandra@sha256:30b03f9076ddacce1b25a9ea49ac098497f51377c0160be9f7b823a2ee8aa444
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cassandra@sha256:704e575657358df693b7681098e9e7b08fc02211adaaf76735ae408839bd0247
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cassandra@sha256:870c6303d917f4fa93b58325546f568a28fadd63bca603044c2198e490b804ba
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cassandra@sha256:81fd3403476e6e3ef6f4e4fda481d2edfe317b2d23bfd13641fc461cae645ed7
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cassandra@sha256:1cfc97e389af9bd051cfaeb404caf1b7b284402dd34d26153010f86e7fe4b770
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cassandra@sha256:ae82c303285c4129122e9907fc654e500b4ff22b47583d1c0d92ee2113ae3ff8
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cassandra@sha256:954cf7c34a72f9d6e138ce99f566e381dd1496a5107293cf732abd4c68438376
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cassandra@sha256:4576b39cebb865518a1174fe9aa5d1796b464449cf1dce821c99f7c53e824858
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cassandra@sha256:c49a8c0cc66550b69eb93285f23455b56f05ddae93eeb374218070e1eb377ba0