dhi.io/cassandra
4.0-debian-fips-dev, 4.0-debian13-fips-dev, 4.0-fips-dev, 4.0.21-debian-fips-dev, 4.0.21-debian13-fips-dev, 4.0.21-fips-dev
sha256:2b50b88e4046feb141c329e0205ff1a8ddbe05ee9de480862cea56efaae62036
Manifest digest:sha256:b6628d11a809a7e5e8760f942d92b6b109e133121321625a1e7507da33c79310
Size
234.76 MB
Last pushed
8 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/cassandra:4.0-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/cassandra:4.0-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/cassandra@sha256:f0e34f2b84eb3e705b4fe4feda7c422be030c11a794fc52edb185cc52c70e5b9 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/cassandra@sha256:1cbf03d89f156f19f3bfaf4df5211f165657c26e33d5d6f84fa99b8f0df02844 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/cassandra@sha256:cb6ebec5ed24933121a9192838345402a90eca8ae0d579b7fa1f5962e1124450 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/cassandra@sha256:d89c978de59eeaa668c2e6904f5475f6a85fbc18dae8033f4576e38ad89dfc6f |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/cassandra@sha256:3a51c0eae6eeb542ec6487692a8d751d7610a589d9ffe52c8763100b66f6b5d1 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/cassandra@sha256:9233c732e133156e11f4a51bacaec7b5c0abd27b43c7f9060272fe65e4039851 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/cassandra@sha256:7589c2fd37a663a77bc464c5b05fd6ef15a8ab0d1d5c4a4e03d06e41cbfa84d2 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/cassandra@sha256:240d59c495ba844d0aaed5c7c91d84d28be9bdfce3b2c66e6559cda8e2d55953 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/cassandra@sha256:5e930e6257cefc5ba11bbd296c137549db1780a3e0ea5b61a47eff623f2df861 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/cassandra@sha256:257b1b4680a9dbba63911dc759e681ae928691d8ccba91a5f08e7254cb5cc9e4 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/cassandra@sha256:967ff3f50efa9ce9374437d32cabf4e4d2d9ba48765229f0feb56c8cbfa78a57 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/cassandra@sha256:2506d9b5050a082fc514cb9aa55b848fb86d869260cae0a4cb6d43eabd52a580 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/cassandra@sha256:418c9f8f2765eaf2d054ff10aef8df41ee7a267adc755628cb311597f27387fd |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/cassandra@sha256:5fc5d704074b2f48dc5dc5856da47e3ae7665bafddd2bfac639e546a01ce2b17 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/cassandra@sha256:fb22239a3a2ad583fd3743da7d7b871f6db79dd5e0ac7bc8d25b851378e8102f |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/cassandra@sha256:1a6eea72c425f1d2f67173a9b13a0772f145064850f1d219f71b13bf7ba61934 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/cassandra@sha256:13749bbc92218a3ecbab8d0491ff10357e48f8f34a02d24b96a9e9d32612eb77 |