Sign inSign up
Cassandra

dhi.io/cassandra

Cassandra 4.1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

4-debian-fips-dev, 4-debian13-fips-dev, 4-fips-dev, 4.1-debian-fips-dev, 4.1-debian13-fips-dev, 4.1-fips-dev, 4.1.12-debian-fips-dev, 4.1.12-debian13-fips-dev, 4.1.12-fips-dev

Index digest:

sha256:28953ca3ca4b1e903369ba0c5f264f2e11c0d12e4ae0c5377f0c1e6b9995e242

Manifest digest:

sha256:d8c9d86ca6d6b304cb080e2a35d6bfad582eafa7f80077543164bcd71fb0fa75

Size

237.29 MB

Last pushed

14 hours ago

Vulnerabilities

0
5
4
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cassandra:4-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cassandra:4-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cassandra@sha256:0e440de0e98672c093c7390e2e3e79a4c9a11ae8afebb3fe6cdbb200996a8526
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cassandra@sha256:245c473f014910deac3480344f18c6aa1df241725a56de155407fb58c1b5110f
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/cassandra@sha256:0d8d846df2ce3aa1fcf45e40218ab42df205d11a7f3c8178579220f5d89e7287
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cassandra@sha256:fc94cb454d9fcd48f06da17180c70842cd68bc8b0cb3cf64226488da2745b25e
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/cassandra@sha256:423e2d50ffe51ebc0f6323ce5022f1b22bcf7288225b87e270b2c0a15c84bbf6
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cassandra@sha256:fc8520da2b0d4cdebb5a4b30f07fdbb78d3090d42c4640c45b21ede228da5c37
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cassandra@sha256:469b42a29fa218a015929ad160ddb12bd91d0af7e0a478c7eb94c17c9a9c264f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cassandra@sha256:a372c93cb1f690be10ad57370c4b631581c6d00e55015ca2d1d7e917e39b4f6f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cassandra@sha256:b46ce7e62e71c45781136ee0b0174e29534119a6a1c7fa6066dbd721223e097d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cassandra@sha256:98eb9e3ef07125c167792dccd8f039e5e1b5312f820516ffb8974305c7600f60
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cassandra@sha256:22c7a9dd5eb542eab091423abbe209559d1c7e1f2e92d2725b7512dd239b2b4e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cassandra@sha256:96c6b0fc490029065bbe2743793182de236773e80e45735f2ac9e33cc5f26268
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cassandra@sha256:7a5aae21347b09ffa78124da98a14043657a54d0031958a5cc86e88c4ab9d43b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cassandra@sha256:9e2d70b33c3c7470c8a450e5e91965295fc402eeac2a687478e551187ba06cbe
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cassandra@sha256:0b9f5e96e5e1dc35feced893229e6174cd018759aa71e2e71cec6a91b177d0df
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cassandra@sha256:4baa1d22644a4f1f7151606b1174dd32662be62514aa00552e9ca7ca180936ee
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cassandra@sha256:241551bd679b003c731af901fbabc23dec76c6ac07a82a8a392de756533d4d90