Sign inSign up
Elixir

dhi.io/elixir

Elixir 1.20.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.20-debian-fips-dev, 1.20-debian13-fips-dev, 1.20-fips-dev, 1.20.4-debian-fips-dev, 1.20.4-debian13-fips-dev, 1.20.4-fips-dev

Index digest:

sha256:0cf57521e242353123b8012622b9781cf18bc7000b918e98ae1e32b2156a9c90

Manifest digest:

sha256:bfbb67e8fbf1a63d027db29a419aac10f5be76224b3fe2777a6600544b526b97

Size

108.05 MB

Last pushed

3 days ago

Vulnerabilities

0
2
0
10
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/elixir:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/elixir:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/elixir@sha256:1859b0bde1036d700ee9ab86d1b8e3adff6a698c4beda83b0f7ceb6f9fdaa1a7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/elixir@sha256:959b4193b856faf295070190530c25a70e8c839bbf93d88a75bd94e6067b9eb5
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/elixir@sha256:2470504cdcbee01d63a6b486331b075d33d801ecc8b8091c20a918242bf33586
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/elixir@sha256:639f1a55f3478cf3fbf4ee7639613874c8f609128a4d464167d057b437a9b216
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/elixir@sha256:df9d054d7d285e8be97b913fc6963e0ba4c6c27040fb7c6eb1daaba7fe25b45b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/elixir@sha256:6500fa2cafe469658b4f1185108828bbdea587fcb9fcd3dc4e413a1969a06c06
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/elixir@sha256:1e51c630c9e3d5271d27575620972136abcdf8da538d3bf9edc74df09f9154fa
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/elixir@sha256:0549c55a54e37eb6107a0a1dc4a7753b3f2a53a8261286f6939a92c42eb89bd0
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/elixir@sha256:0061c479e1518cde39e1bc236e86f36321a205d55cb408f75df386496aa8bc46
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/elixir@sha256:86ebba78978bb78f87031f5e8f754e862fb7023f0c075563f9742f884a71882b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/elixir@sha256:d2c688d7b6edf3df7d373ecd7a127900d929d5c1f65f5fe36e8ca2786342087d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/elixir@sha256:cb3f509092946aae9e82b6120aee7b8741ce102f312005b0819d6d41ed96f348
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/elixir@sha256:035f5697d78af31c23a9419f4d5d2a98a7dea9b38b620c1b9d1e590c5ce55e05
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/elixir@sha256:d7fc7cc0b4ea6b1e1a1c0aed49d799d2c9328362c1f914623416b43ca5fab3b1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/elixir@sha256:6ecbd210dbccfe9d1897a043f251adea1c8dadfc11985ba6533cd507b55fe36e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/elixir@sha256:ff4cfc5d0fb86b70d1335c13e4617949d49556c92a0c92d89377cf057ae88814
SPDX SBOMhttps://spdx.dev/Documentdhi.io/elixir@sha256:5702e65a2867107f77c89a600e81f8f5e9d37a6987ad3873372e8b494294b55c