Sign inSign up
Gatekeeper

dhi.io/gatekeeper

Gatekeeper 3.23.x

CIS
linux/amd64
debian 13
Tags:

3, 3-debian, 3-debian13, 3.23, 3.23-debian, 3.23-debian13, 3.23.1, 3.23.1-debian, 3.23.1-debian13

Index digest:

sha256:864df71644a076b1992401ad0b523056971fef7dca1241f2c2797764ca1d2ffa

Manifest digest:

sha256:e3ae3fc343fc3be7cdb5856c7b62237a0c03dced6e2abc8d9a2aff5dbe026321

Size

21.44 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/gatekeeper:3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/gatekeeper:3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/gatekeeper@sha256:a99ab05098eb9d0cd31185a914273f51c16e5612d72adc1beb812ba536bc8e8c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/gatekeeper@sha256:09c8e1e651c34a72b1e4860b8e98d5f86aaf87cc76046792bc539b229cd00971
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/gatekeeper@sha256:42b4fa3db2a403a0a094ee6e32a63417d6be042e8a1cd0508c6f84d2b265b4bf
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/gatekeeper@sha256:9311e5e08b59f44a923d0aff653c119a5a8328750a6cb6facac4d2a9907fba23
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/gatekeeper@sha256:191922454fdac41d11fca4ec5024e7963f7a6bf3cd0f2f3379ad4cd6a04ef73b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/gatekeeper@sha256:5d4c44223eb841bde47e5caa6f59f357d7b4a65cb82393184c4d563527135860
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/gatekeeper@sha256:b70f9a30795d29d649913361a77702d94be4d2c21ba9dc5b32ddd50921e2a5d1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/gatekeeper@sha256:408f383ee1e15b09b725cdc84452ab0e5a13c68bb8aa6982f477168cdae6f87a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/gatekeeper@sha256:5fa9c5ca802e2fe7233785f01072eaeac406425584061b96a46219c3b7e47a41
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/gatekeeper@sha256:bc6423e0b3ec6cb2c6406e670a883a36d96d3fab8726789fc4d2fa3ce684079d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/gatekeeper@sha256:e320136aac84d7e1e18d551cd0a033433c66bd92730a5228d488de61f385a8d3
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/gatekeeper@sha256:d79c55c48b344cee27a8224f97168451593a0282ba10b6792aae7633299019ef
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/gatekeeper@sha256:441930ba6f75a6c7c2b96545c3052a78296dbb6ce69546af6f12d4a0919d85ba
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/gatekeeper@sha256:4316df8c4a2f85c93df6f83344f1ef667d4f492707d2d1d25fb76f2419afcb97
SPDX SBOMhttps://spdx.dev/Documentdhi.io/gatekeeper@sha256:baf3143f80ff337b9cf15eae20bd273ef55dfc489ed242eafdd6930a93894c57