Sign inSign up
Cassandra

dhi.io/cassandra

Cassandra 5.0.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

5-debian-fips-dev, 5-debian13-fips-dev, 5-fips-dev, 5.0-debian-fips-dev, 5.0-debian13-fips-dev, 5.0-fips-dev, 5.0.9-debian-fips-dev, 5.0.9-debian13-fips-dev, 5.0.9-fips-dev

Index digest:

sha256:b97c8b8c51624af25b6785e735a5215f09ad1ee31028be8c82e38699198705f9

Manifest digest:

sha256:56382190a1d5f2fe3669cb8fb9a8a8ed0fba0f384d87a4338892fe8522c67d22

Size

249.26 MB

Last pushed

13 hours ago

Vulnerabilities

0
5
4
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cassandra:5-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cassandra:5-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cassandra@sha256:21745a0a0dfde54f25d478945d144823164fec115c5c8d6fe941123362ba400d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cassandra@sha256:28bfaee9584f467f9a440d382000f38a5e3a533179d893f2aa8240ce751a82cc
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/cassandra@sha256:ce73df00201ed30cfadd3299c11cca17b42e1e530536a65a766023120473c817
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cassandra@sha256:eccf7fe4543e43c48b91f0b77a249778dc605798c7bd57c8b80c446d17a263cf
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/cassandra@sha256:73a552c6679494ad5daccf82a26a902f2bff40dc706535e4d4879e0d3a61bb03
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cassandra@sha256:617b322fec8cca7a4fd230983870a566fab65749642f5e1b2ae15aa95d3a783a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cassandra@sha256:2cd0333b3e0d693c610549ba5b5b31a14f32c3fc231e4f59929bf739875ac9e4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cassandra@sha256:18d3e9cce8bc26c2d7ef003f495a3f36e307955b51c1828a8463d8945c28d2fd
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cassandra@sha256:f58edce55db2313c56b1e3eae99ffae5e0e6ffbe5a87622ef1aa971b2c398d11
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cassandra@sha256:dec02a22bfa7c746987beb5ab13438d31e91941496bb5597a5c7433ba3864a38
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cassandra@sha256:ac9d35f486f92cb6ffca2884fec2c2b0236ee3bb018c82be52d998d8663d858f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cassandra@sha256:21f6dc96be32d431da6d90d27781a74fb014638baa0af0f083a911e690dd297b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cassandra@sha256:569d2bef4062c8313697dad7774974ffbcb5e04647de5567cc73ac6843b22521
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cassandra@sha256:b94a6bc4b4e1218620a720209113e6b60eef1238b493f445f27d2beebe18e7e3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cassandra@sha256:326789b987b8b080bb0e7c01e5f022e3d82e7448592aec9d578277f4da8d65c4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cassandra@sha256:09849592fbc18e01a0413702b0627ba8f17e32a9b1287a406c17009fcf84fa88
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cassandra@sha256:d8fb07fbc35318c155ad206b4c6d1efe196597218cfe1d688a21a15d0853aa40