dhi.io/elixir
1-debian-fips, 1-debian13-fips, 1-fips, 1.20-debian-fips, 1.20-debian13-fips, 1.20-fips, 1.20.4-debian-fips, 1.20.4-debian13-fips, 1.20.4-fips
sha256:27086cf91b715018a879ee15f6f1e140549ec644d3efffb837aba2cd06993dbc
Manifest digest:sha256:49e2168ef9b6232f57069729182dc580684d5e06d1012c38c320e519446bc299
Size
95.29 MB
Last pushed
9 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/elixir:1-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/elixir:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/elixir@sha256:9c92f9c1bd458b5d045ef7231e9ea70dc50ba893e43e4e8f24830fedd0d2ef83 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/elixir@sha256:c9b6d973b7223a6ce5f4df18d3ef8cbfbdd5d4a94bed4d64a5b9f6f95909d0aa |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/elixir@sha256:01c9d4757161170e38aa4595da13500baae1f26f4a95f6d119720b60ca8d917a |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/elixir@sha256:18e6524eea81aa260f52e945196464acf5e0c35460097f76cbb9e1cebbd83e22 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/elixir@sha256:0e197bd23ba3f1d933b31ed33fc3db5d61792e7df58a7d935de75f746d8344b1 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/elixir@sha256:6f4cd5c90611a66fa2c9da4d52be3852200b18c7004c5cf0e71d6d4a15242da6 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/elixir@sha256:fbd036da54798fa9913ed58e48099c88c3f33d1740184de636c2e6c21e820576 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/elixir@sha256:6679c2dfad5d74c52dabdddb4f165f9787f379638c0c7f3e879797acf2991820 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/elixir@sha256:d8e6bc45c65ba48211858519c625f178eb7416a2d80e23e3c801d039ecb93c46 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/elixir@sha256:c222ac7736fe2ab16181089a73759438d42972e6db80135e2ab384ed6e191280 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/elixir@sha256:b81dbed3332c35690498137c2cabaab92f5880c4a9db62e9e18240def482afb1 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/elixir@sha256:7dddd277564b66a0b4652e7f68c469b3edc39dcea174a55cdb2a575f81f3e08a |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/elixir@sha256:e5b49f62c11fc4343848a949b4b5d371000deee23b227443f6b81d792752763a |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/elixir@sha256:c43bb4508504592e626b4cfe7734035a3435f8cdd247c399e62c86970dcbe5ac |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/elixir@sha256:48bdd31d03ebaa02206c547519931448269f81e9582e18d319bf00136eb367fe |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/elixir@sha256:d4041be791f45e5499ccce5ab6340a5919396b5a480e6d3213a148107ad8d154 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/elixir@sha256:9e0ef1dd043cb483e774f9f8cad92f70bf4984745c6cf1965c5ff31ccad89e5a |