Sign inSign up
Cassandra

dhi.io/cassandra

Cassandra 5.0.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

5-debian-fips, 5-debian13-fips, 5-fips, 5.0-debian-fips, 5.0-debian13-fips, 5.0-fips, 5.0.9-debian-fips, 5.0.9-debian13-fips, 5.0.9-fips

Index digest:

sha256:a5fb7b19513f9b297a62f62898cdd9eef29db20e6b1dc2234eeaffd7dca495db

Manifest digest:

sha256:e44cccbdcc570e1f128ee9719921a82f9c76f7e2ac72fbfd0a7a2e4d086f528e

Size

141.83 MB

Last pushed

22 hours ago

Vulnerabilities

0
1
2
9
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cassandra:5-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cassandra:5-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cassandra@sha256:251e0d86914620e867af97bc5cc1918d459dd544841d5f2125ca9c777b5f353e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cassandra@sha256:75e3336d264feef6c7cd3f92203ca2b7319b7a5b18925b73d12e8d46a97c870d
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/cassandra@sha256:d19ec181933dfb4141c5ae2e2184f2abed0df06d2dbf75ad81d7e5911dfa50d4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cassandra@sha256:536de347bdccf4ca1af411c6ee0be12a36650b756f87fbe924e53a4ace19435d
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/cassandra@sha256:10e2891be6693f67e6048de995bef098ed2b4dc0a36f39857a39bb4778066eb6
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cassandra@sha256:8b91f6d761ee4926d8984b1011eac188d9de82bae28fa07a92a2680cfce188aa
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cassandra@sha256:5214b5920972f652c31368d061c36d65b31e7f1bcf3b999beb817cd5190f9a7e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cassandra@sha256:7290aedd6656c11832cf3bb8b55069e5f9ee8dd33dfbdcae9b40e8dc830738b6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cassandra@sha256:c0448cd69b9381ce9ab2762d5cec430bd637d3021a6e6258eebb07f99fe100a3
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cassandra@sha256:4f9d3d5577df3d32639a9a201271fcdc30d0eb160731cd99bad496a4cf673cc7
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cassandra@sha256:2179f7202fb4012e5ffef6d8c0211ad153397eac364b8eaf3f07444d65b4b533
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cassandra@sha256:ef8ddfb31ac42c249ea93c94d191d3972723c0ce351ce8c14052c508f45002b3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cassandra@sha256:23bc3e637e37e327313ef8855818f7f2f821c7b066a2521035d9dfc1000e5842
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cassandra@sha256:42bbe641fe6e626c139760f53b2e7c7b6d822619717a8a46e8bbb2701d50cdde
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cassandra@sha256:ddabe0f250b11580fa6c1fb30f9c868dbb304cdaeb52b1182ef66ca2a9ac2f47
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cassandra@sha256:6c36466a291250964dd27ce76c350c33a0378e41fba6392d06233c3fa19a7aec
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cassandra@sha256:37a29cf9b733a89a6d683add1519650096d1ca200d552ea1a83733bf179489e4