Sign inSign up
Ceph CSI

dhi.io/cephcsi

Ceph CSI 3.18.x (dev)

CIS
linux/amd64
debian 13
Tags:

3-debian-dev, 3-debian13-dev, 3-dev, 3.18-debian-dev, 3.18-debian13-dev, 3.18-dev, 3.18.0-debian-dev, 3.18.0-debian13-dev, 3.18.0-dev

Index digest:

sha256:58ba8a2180677c458e32f1c8fde504c519e80750553bf7f50de1bd0bc9deae9c

Manifest digest:

sha256:d8db4ab32d973d8a4ee830c469cd5e9bfe6dd506b7f68fc73c07b34e146d9c9c

Size

145.90 MB

Last pushed

9 hours ago

Vulnerabilities

0
2
1
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cephcsi:3-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cephcsi:3-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cephcsi@sha256:3e89f07fdb5841a591d849f067e94ab782bcf4c60a0d9c8c5f94ded046596527
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cephcsi@sha256:624f4910f9505e75aaab1dff1cb82920e9af3335e9b7147feb2946d874009956
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cephcsi@sha256:ca03134658ffce197d0763d74271cf1c19e06a6b6c6fb7bb5fb1b326a2a21bdd
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cephcsi@sha256:5614fe84fa0b394b24016b4ba5b78fed8541458c146b932c9d4456068620d592
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cephcsi@sha256:95243d24500790cea1ec649f567364125d9759495a6198d5f49323a3a080a2d5
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cephcsi@sha256:1d676f21f7698297ce2f530baf420c02bfa07653b261beea251a6ddd405fbdba
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cephcsi@sha256:33ed0ffa52b2b0b2802214bcbc5bba30de1883226744f5903bdf54d74eb4fb4b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cephcsi@sha256:8d2982ad4d73211460f641dd824dd8d99f6ebd2d80679eb9a211d55a1b1fc029
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cephcsi@sha256:fb8b7e8d22be3e392ae19569823d305ceba2eedd77e71464a2e1461fd7f02671
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cephcsi@sha256:9c4ae35ee21875d192ef2f7c027f73ae404936accc9a0106e7d8cfbe8dd29061
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cephcsi@sha256:67d4ed6716d08bf3e9407bd4031c5e2bafd1371255b32747cb947bb08ce9380a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cephcsi@sha256:5ff14b4dcb8d15f811717d5af1b19648b6e0f1b78ddfd482644cfc682231c745
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cephcsi@sha256:eb7e51f1fb650b82d9c01b0f9db3443a2f52c1e37d7d4fabfa451a55c2498e06
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cephcsi@sha256:e2ca8da8236265d2cd27f92a28512249ce2009d4a386a55de0c95c01ea1dfbb7
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cephcsi@sha256:f5cfbb6e53a97eeaf0801512862a25eaa69c290733c3fcdd4b22fae11b22a593