Sign inSign up
Cassandra

dhi.io/cassandra

Cassandra 5.0.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

5-debian-fips-dev, 5-debian13-fips-dev, 5-fips-dev, 5.0-debian-fips-dev, 5.0-debian13-fips-dev, 5.0-fips-dev, 5.0.9-debian-fips-dev, 5.0.9-debian13-fips-dev, 5.0.9-fips-dev

Index digest:

sha256:c44a6522cc5cb9575d702dc970ee7c82e183a7dfb0d81e3cc2954030808d2a00

Manifest digest:

sha256:ab6a425b21f1eda8f2f908556bc11e7d0e0baf3dfdd36cdb6844d6e9970a5014

Size

249.25 MB

Last pushed

13 hours ago

Vulnerabilities

0
5
4
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cassandra:5-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cassandra:5-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cassandra@sha256:2b0d84c7b447a37fadaa8885336bcb772dd5dfdf8fe08e28b22951e9fcd7266e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cassandra@sha256:3d946936d1ef673adda2ad0551a0b49e34f0b99be4706271f26bd6955d8b786e
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/cassandra@sha256:26b7bd3d13bd6b55dc507a6afcef94be1a2948f377f8887fc51dcaa57addb3af
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cassandra@sha256:2f2f01772a52eb61f4281ac68b9ab9962af1016f92272a22a8575d5b011d6317
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/cassandra@sha256:ae47f82cce3636798758ff0b294c531fded65cbc1db0673e21d7b134727d731f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cassandra@sha256:06622e010312cac20570a62b75b80359ff62ae12cae6168d5da1b8023d446b83
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cassandra@sha256:a26b01492b964632e060d4360373e16edb8862453349784654b5d3bf0d69c33f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cassandra@sha256:2a92949bf766abb1b4ff73b94aa77af830fc42da8ee1179991c51da30e21d4b3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cassandra@sha256:e5ad4dcb89d0ac073fb9cf5250c58866e8b48f9874fc751fb6689425ce4cd441
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cassandra@sha256:39983317a0464451d600f488444803bdd29e8b1b476d12e5570ec94d20f44ad1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cassandra@sha256:958d0fb170db4c56af06d88df8d7c932fe3888e7d02a534a0a07183c75233e47
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cassandra@sha256:a62052c67a8b71efb944251b2fa6557aa049a723bd533a5533e14a13517ec2fd
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cassandra@sha256:81deb682380f2cc2f6e6a09086af720874bf52f8930662c1a6786d0aef0ed4e7
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cassandra@sha256:3d0aed791bf524e764b1b601b26523dd68e22ccb50ce6757c8da20e74b5f19f9
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cassandra@sha256:fe5bd15bf3b8a43cd14cbf4b516c898b19bbc443e18c04f7bd4b497182ec08d7
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cassandra@sha256:5fb6cbdae6f3f785d825950b818efacd5465804a65d9dbbe2e970f2944b86ccf
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cassandra@sha256:f0ca498b701990ff23f327159aec63e1c43a1c5074047ca7dbe6f50c6bcb5883