Sign inSign up
Cassandra

dhi.io/cassandra

Cassandra 4.1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

4-debian-fips-dev, 4-debian13-fips-dev, 4-fips-dev, 4.1-debian-fips-dev, 4.1-debian13-fips-dev, 4.1-fips-dev, 4.1.12-debian-fips-dev, 4.1.12-debian13-fips-dev, 4.1.12-fips-dev

Index digest:

sha256:2d5916c825bcf156c4173a8d9e3df92c649f0606cae7f39db90fe872d8af56db

Manifest digest:

sha256:80f4d4bd2f21d2147f4e7e8b01db4f27fe5e9f591f9a4ddb1e2c183a7dc0cf47

Size

237.29 MB

Last pushed

5 hours ago

Vulnerabilities

0
5
4
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cassandra:4-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cassandra:4-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cassandra@sha256:a378c393a0acdbb381913def0eae3b91af299fb6e85670ad61abc7185e1d7f67
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cassandra@sha256:5706340e5e06b4ffc12af066b1a28931e02a19b3185406aa8e0b7849410dd976
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/cassandra@sha256:ea9dfcfc216943533d30261e1c541b0a0d0293378bcbcaaaf477c3d6660688ef
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cassandra@sha256:035431841064a28f86b06db42ef393f3d31f7e99412fc19348684a5860fd972f
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/cassandra@sha256:444ec5ed2ade54f343506245209bb4588055e6102e2c30ffd7c1ae000cd7f626
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cassandra@sha256:2366c1ce5d23b0af55b359a590451345882a0391302cf0914f0b0e0b8308791e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cassandra@sha256:bf179670a50e9734c8b7d91d8bf1d08bfe3cca91effb0514c362c29a8ed174c1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cassandra@sha256:4c50634da1dff931da2f19436bb2293fe77220ec6b7d1ee02b341f3e9f713b34
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cassandra@sha256:7281211fc8066a883e2d55bf61e7c77d70aa21eacabc82230d7e8f5db1f8efd9
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cassandra@sha256:719ecc2422e41447721e1a62cae1a35ccf137e3c73f4912f4296df34bb7fca31
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cassandra@sha256:95bab4801370c637fe6576d3c22f7cdce057795641d3a5f19027bf3829b041d2
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cassandra@sha256:b5126569bbf09bced7e89030e43cee8189b334440278dca92e8d2b5a73b69ad4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cassandra@sha256:716f9cc59662c83147df79f5a71b47c1185f311c34caddd51ad913af962de343
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cassandra@sha256:594e176dc8ecafe10d9e15897fad7ff18e18355a23f24a8343dd883f79b02dc3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cassandra@sha256:eefe72e758131f90b4a7debb83d52db2aaf2598352d34cc277e648bb63c80a4a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cassandra@sha256:fed9372574d116efcb2ac430af9cfc44d2596e738803f855b9cc456972dda21b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cassandra@sha256:5dc1398c40ddc993c9c09eead665b4e55ef239bc3635813debfedcb38932b072