dhi.io/data-prepper
2-debian-fips-dev, 2-debian13-fips-dev, 2-fips-dev, 2.16-debian-fips-dev, 2.16-debian13-fips-dev, 2.16-fips-dev, 2.16.0-debian-fips-dev, 2.16.0-debian13-fips-dev, 2.16.0-fips-dev
sha256:2e4cc47d15452015bd2105284c43b2eb8cbd6f062615177f512417c7297e3e91
Manifest digest:sha256:975c819b19572d0dd0574ceae7aee276d55632f0b41b86484176076444d1c598
Size
453.89 MB
Last pushed
8 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/data-prepper:2-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/data-prepper:2-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/data-prepper@sha256:1af4f50f06c213faade9af4a6dd3fec131b9294ec6aa5929e7895d2300a648a2 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/data-prepper@sha256:1eba42b87b2509973c6cd6ed045da75a20de417e63f84d573c6bbcf2091a52d1 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/data-prepper@sha256:5792def8b1130f764809c53306538e0192225c20417d9fffc48bfc373aac43f5 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/data-prepper@sha256:2d776af4378f4e2c8d971b539d072f182c5601bd3784d9a14aeb9f18ac9f723e |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/data-prepper@sha256:00dc0e115b41dc47522ebcda9670d0ddd2cfdcc9a0b327e6590c60ac25dca9e7 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/data-prepper@sha256:155ea1971f7963e9777bad4400ca702de60c224833278679f51df914d571bacb |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/data-prepper@sha256:1ffe3373e3a3bc2baa145d802e8edf35a39093c6df5b742bc7bea9ebf9aa9168 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/data-prepper@sha256:9e3358bde702afcfef6ef8546bb5d6846fbff00ac0e54067c53ac110ae007b4e |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/data-prepper@sha256:3151bf099939f69e52ea21613562183baed379a527f9c17752efc0425a8a1226 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/data-prepper@sha256:119aec659413321c5b49ec04617701b8f135d0aae49e71b112fba38fb2727568 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/data-prepper@sha256:69ba6c0a4807092baedaabad066c1be32327ad0eb17a2e2c5124017192dade71 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/data-prepper@sha256:d57b36969dc95a55bd31fb5dd47f45cf83f47d5deb4f755f4eed19776377e232 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/data-prepper@sha256:b9274313cd68c1ee7504f0c0132d0402591c6f83932ca367fed6bc4ba824e48c |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/data-prepper@sha256:b6dfbe66e1f5445fae0919e417a111f5b3dd41d6bf86d8f6e6d5cc9b266772a0 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/data-prepper@sha256:47c5ef0d557518bb0d62fd789021cdc82696fa65eb71b3b33e6955de7d9b70fe |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/data-prepper@sha256:4b6f5a05221ea6ecad22207c19639dd380164b65800b60df69ff7a52fcfb9589 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/data-prepper@sha256:63f4f7ee3d96af9a28bc945f76c803dde87f53871dac5bc4651f6744c610ac24 |