Sign inSign up
Etcd

dhi.io/etcd

etcd 3.6.x (dev)

CIS
linux/amd64
debian 13
Tags:

3.6-debian-dev, 3.6-debian13-dev, 3.6-dev, 3.6.15-debian-dev, 3.6.15-debian13-dev, 3.6.15-dev

Index digest:

sha256:f3a0a8a947ac29b46605ab286f54c227cac9e02ef885592d7f40d798a1ac1967

Manifest digest:

sha256:ba251c14304f9878e4f5b1af3f3458b977d933f05e5f8cd9cf63c253a8edafaa

Size

62.78 MB

Last pushed

4 hours ago

Vulnerabilities

2
8
0
1
3

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/etcd:3.6-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/etcd:3.6-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/etcd@sha256:42cd80d605771ef421515978ea2102c651cfe5ccc385a3f50a30fd04aa6e4bcc
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/etcd@sha256:a3c093317c8f5e203d1dc55122374ad2c0b51c2ad249b25bdd392cb05bb30111
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/etcd@sha256:5a3d191a3498e25836485caa2d46d845f319b8425afd4f751bdda00531ad546d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/etcd@sha256:14f777ac46c18d443e3ba0db2512f47a1c1fb9c50b8421d34b1ef0a392e9a34e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/etcd@sha256:0dcab2fc37c2a733f7a51eb7c017faa543c19eda1b42e07417741cbd1ef44a05
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/etcd@sha256:83931b7364e7933c204d76ba81eedbc8435e98e243f1fca27fc9243beb6423fc
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/etcd@sha256:743d8b616a1bddde00cd4f8bc1d38b74d507ea4ca782f7ae5a0c69420b6da1e7
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/etcd@sha256:4bf9664da54645314b3088fd6080b853522848f8c184383441f104254da447ef
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/etcd@sha256:7419484f98bfc459565f15c91738fdc961943af05c52fdf34384c9e8d883565c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/etcd@sha256:d41e1115aa392c61abe5028bc48e56d351bbd2b106f982162bd9185412c7041d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/etcd@sha256:96c62d82ed3bbc309549e27f261a15e385ae96dd448162c69d4bd5ea138d6fb1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/etcd@sha256:939111ae7056b5f043e71dca30381e064bbdee841d2e4e9eeae0d47d93d85bc1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/etcd@sha256:a426ecfa71f5e5f5c02eccc31ef6599837a64076725bfa86281785e1ddb49ef6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/etcd@sha256:ee745cd98c27e950af76db6ac83e25ed173b783fe99795887fe0490f211bc69c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/etcd@sha256:3863daebe13ad7eb0f07d943197eef4d76ec14bb1e67d349b979ba831a16e476