Sign inSign up
Cassandra

dhi.io/cassandra

Cassandra 4.1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

4-debian-fips-dev, 4-debian13-fips-dev, 4-fips-dev, 4.1-debian-fips-dev, 4.1-debian13-fips-dev, 4.1-fips-dev, 4.1.12-debian-fips-dev, 4.1.12-debian13-fips-dev, 4.1.12-fips-dev

Index digest:

sha256:2bc3744a1aba05c5c151f98bdb6abef0d5f013dd8a7e618340d24aafbcc71022

Manifest digest:

sha256:f7795b11bacdd786ee6a89ae57240924b76ed9b25faa9e5494635f2fecb5a5ab

Size

237.30 MB

Last pushed

1 hour ago

Vulnerabilities

0
5
4
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cassandra:4-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cassandra:4-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cassandra@sha256:f5a9ff21ebfb57e2d77c674c2a4663f7a0538387967261fb582b8461f6a9f27b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cassandra@sha256:f15526f7f76a80b5fd0bf4b98cacb9a6fc12a22f933c9a3aa5e2e18170a4d7e1
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/cassandra@sha256:d06c4f47091c6af6ed6fe0c32b031f3e248e0b2327da6ae898c3fb37a141f05b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cassandra@sha256:3db3a579e681dc724b364930f1912a02cbf0f9cfcd8fab52b253b19275ca7418
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/cassandra@sha256:b671307c4a39fdceb70a03ed751e410b943eb76996fa2833450d38272de9d9d8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cassandra@sha256:91e91df075ae1aa0971cb490a520ff658f890fd84726d4045bbace46af8efba5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cassandra@sha256:23c409732f0abf24d52fd6165aebfb8b446b204379ec57bd3d33ee684fed71d2
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cassandra@sha256:15137e63f94a56654edda66e6b9745508ef7c2e7cce4412b19e9626ea1d799cc
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cassandra@sha256:b12903cc63beb717fb2451b907aae0dee8c975d5635a503c22919318aeab2c68
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cassandra@sha256:3531ba383e2494de33c0951ae299fc27bd5158c411029dc1c5a90af2f2b3104a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cassandra@sha256:873d886870ab5adc67f006adc3160b88738116d5ac635114c8ac850adcb3addb
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cassandra@sha256:69aec5616e3441956c36a0ca06e65f2c80b09bd1855b7259bf21bcf09f2cea52
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cassandra@sha256:bbc3e6e20d7e3addab0a75824a9f50aa177529551de115a6efdc17bf41437b61
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cassandra@sha256:db1e11138476ebd20a1312b17a6145ae7d45a8064907432861b505622a39183e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cassandra@sha256:0537b25ec8c78a736b6e242bce6aaf6156c89d62b92f3439d909e2bb2262e714
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cassandra@sha256:14b358f1c2607a905d48f60c6df919675e9e17eb9195b0e9f29d6bdba70035f7
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cassandra@sha256:a8e75cda3f867fff5adba30f6666166725f638e8752a99a76d347bdc872631b5