Sign inSign up
Docker dind

dhi.io/docker-dind

Docker Engine (dind) 29.x

CIS
linux/amd64
alpine 3.24
Tags:

29-alpine, 29-alpine3.24, 29.8-alpine, 29.8-alpine3.24, 29.8.2-alpine, 29.8.2-alpine3.24

Index digest:

sha256:b7f5113b74e42eed0178d8ba22cbe5b26cba0253479b460e2518b385071442a1

Manifest digest:

sha256:cc2cfc1f4f2ba5f6fadc55fdb932a3c125f199f2fb8476ab7cb77de25335c744

Size

101.16 MB

Last pushed

17 hours ago

Vulnerabilities

1
3
5
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/docker-dind:29-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/docker-dind:29-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/docker-dind@sha256:1bebc2e152efdf51aad15dae597d7c1240f1be332605656db15560cfc8b491ae
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/docker-dind@sha256:aa5b7257e270a1c03d335df9d50122ec0275a271eb8db83c9ab071dbdbcb3eee
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/docker-dind@sha256:e7d457b9b239ed032a56313e39244621568a22fde1367f87fd7da742d1527f05
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/docker-dind@sha256:2c435f894006a4a513fd0a24f5d928be92da476bd57a21043de2550938a406b4
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/docker-dind@sha256:6cc72add918bd3d6933ee8290fcb5acb2a469363a39a1d26a1669b06cc5fd75e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/docker-dind@sha256:c1c907060745412a0e8f5d12e54ea31f759f3e8b73c361dd4aaea7f6bc34808a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/docker-dind@sha256:cc2ffe7bc84998e48f08734cba923e993cbe801dd539eab5de1110cef22afd41
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/docker-dind@sha256:2564b3efc7b062e4edcfac05682b93530fb7ef7528b972a598f88e9b475d65c3
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/docker-dind@sha256:68aae7912f10b8f819b9446aba8793ce001d3360a48b41ec028e88a8f1c787d4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/docker-dind@sha256:3f4c6554d318ccffda0c8adfe31f915d7fcecf71c86d5a43ac5a213f1f8c7dac
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/docker-dind@sha256:191ce4447e9092d4077022a1d663ff463d9fa4b6777f0b77e6feddd6427f582a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/docker-dind@sha256:19948808e1530c88b3c72a20e10f8838cc9524dfb2b0906c7f2a0cc81acc1570
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/docker-dind@sha256:cec329490c12d33ad431f44b0396168cb85b7d8bd4ac65d065281658694e6597
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/docker-dind@sha256:d568f24d06aaddc74e7a1334c7c28bb96c946a1fa3a4da53a6097a13facb75d9
SPDX SBOMhttps://spdx.dev/Documentdhi.io/docker-dind@sha256:1dfc5c8d42c0b08934d71efe520b009c4f53e43b74da7d1c506a92e59d5cdc67