dhi.io/k8ssandra-client
0-debian-fips-dev, 0-debian13-fips-dev, 0-fips-dev, 0.9-debian-fips-dev, 0.9-debian13-fips-dev, 0.9-fips-dev, 0.9.1-debian-fips-dev, 0.9.1-debian13-fips-dev, 0.9.1-fips-dev
sha256:090ff18961e3f843cab47bd085f4386623f1746704afdaedc12e257c5fcb6d29
Manifest digest:sha256:86ba192a5ffa89313140b8a1c7d17b03d4a55a6eccdc672e9f4635e8f1a4ea3d
Size
123.77 MB
Last pushed
4 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/k8ssandra-client:0-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/k8ssandra-client:0-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/k8ssandra-client@sha256:b44e66bda7c11e011d021fa351f94544e80d28e48b709fd4b56e1b2443ecd362 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/k8ssandra-client@sha256:3fb1486b223d6b9fe44a4b534a6606575d2d6755b887eae500c2e0fb5b9af2af |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/k8ssandra-client@sha256:557ca242feff48202ad885ea33518b403038da160543e78156f710ab7c720cf6 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/k8ssandra-client@sha256:babdfbf11b23e59de33bc8bc1ec8290a273639799598196a2e3efc8ea32fff9d |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/k8ssandra-client@sha256:60f994edb7da58bf893ea959cac466765af8fcd97c7d7972a15ec7663bc4957e |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/k8ssandra-client@sha256:4062ad43a48de4a741b74c65cfe7e7af511a0518d425bf2c5fbaf08e1db6c741 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/k8ssandra-client@sha256:c034509f21aab2154cdb819be743a521d059ffb819d5acf0e1ce7da69226f5b9 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/k8ssandra-client@sha256:959bdbf316825b6ec37bb24bbe899a26320016b2c7b30db8d2cad446887de44f |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/k8ssandra-client@sha256:021002a207719b194026e05f42f1484e5f039eb746c9e8b85a22d9dca05edac0 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/k8ssandra-client@sha256:0848a273f9aada6b1c03dfa7e2a780d70cac2e4b281255cbe7ad3cc880e13bd4 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/k8ssandra-client@sha256:f74d570004c2fd4a0f195c27e487dde28ce6ebfd0e80be3a8924d33f3de7d835 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/k8ssandra-client@sha256:93f25685392d8c786cf624d06e27b0b9ea787b7c5b3b709193532a0197149d6f |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/k8ssandra-client@sha256:6f9e3f9ab2ba52cba86ca8fa204e84c91b96ce2fe2d66e5e7e3ca5137910a936 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/k8ssandra-client@sha256:3e0317ca251ae4291ed4164cecdc44aae18685e859543462e68de402dc8455d1 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/k8ssandra-client@sha256:bc191bf114a9aefbb669add0e7a7774dc5fd82f3d82489d2f24c6ea80b308deb |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/k8ssandra-client@sha256:a2612f3bf1a263e35e092b0cc890768047470d1a4e48e8ada670fc6d46914240 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/k8ssandra-client@sha256:5eb5f67ea90035ef76cea11a53491746afac92f18caa3e2f92585406c4aadc73 |