Sign inSign up
Cassandra

dhi.io/cassandra

Cassandra 4.0.x (dev)

CIS
linux/amd64
debian 13
Tags:

4.0-debian-dev, 4.0-debian13-dev, 4.0-dev, 4.0.21-debian-dev, 4.0.21-debian13-dev, 4.0.21-dev

Index digest:

sha256:fcfa542cd5a6e803548df4acbe7e0f095934b9d9be2517abb665988e4b80258b

Manifest digest:

sha256:ed8ed2df78b8af98ac8d2c3e41c84221ff02f29a12092038e9fb50bacfaac9c2

Size

225.02 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cassandra:4.0-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cassandra:4.0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cassandra@sha256:e80bfe3e629ca5d23aa985c8034bb0c345c2543dfad493f0acf52369ccc4c122
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cassandra@sha256:13e5ee7e33244fcef0ea8abbbc3cedbe1ad24c6ccaa5bf0bcb20029f8de16138
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cassandra@sha256:95c0a51ba916e9de9f013768104c7dbd83dab471010f813b2a621e7a332d0a0d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cassandra@sha256:d3020a73dfdd6e4c9e3bf6c8b95179742dfa0d146faa7405e9861a0fd992f571
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cassandra@sha256:44ec119d63350d5bbd3a71daff360cd66934b481691fe2ba030cd1144962cc94
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cassandra@sha256:314a7c9d026b6f4e950d8e4dbb8f611e02fcc20ee184cc177ec8218628d4cf4f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cassandra@sha256:a6db7cebab4972f904294591ee2ee13cb81d7036cfcfdfe03594a60d7c80794c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cassandra@sha256:d2a710d54ca49e44e4d85add7f9d5d5de0ee21fc3e158e9655c50f50423a45c4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cassandra@sha256:71f3bc1be4f836a9d643684ef7b02f1a7f786a18be87580b7655c329314490bc
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cassandra@sha256:aa29ed1f86b9bb3a43e5363a35b762322af6cd3776056002e3b8c3460173dd1d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cassandra@sha256:83bd35d3dd2693b32efe93f5a0bd70db0530ece5bdfe203a32347806b5fce24c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cassandra@sha256:c45abe449ab2ea3fd5d601ecaabb8f3371af27a20e072f3c70fbf113cacfc29d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cassandra@sha256:c9efff259b7af491fcdedf868b35a3f1ea01ae926b943de0dfcab2f37ae05b09
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cassandra@sha256:3a7ce7e024773c66287e289e007a8ae35b60177178be1a9b2a0f714ffef2b1b1
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cassandra@sha256:b62d142dfb195920c4c20bc975186be8fab6788c274ecc1e034b9bb066fa7709