dhi.io/k8ssandra-client
0-debian-fips-dev, 0-debian13-fips-dev, 0-fips-dev, 0.9-debian-fips-dev, 0.9-debian13-fips-dev, 0.9-fips-dev, 0.9.1-debian-fips-dev, 0.9.1-debian13-fips-dev, 0.9.1-fips-dev
sha256:fc922b4ec168b6fd8a9f7c71097ae279db978a78c1abc92159d27a134e6662d1
Manifest digest:sha256:cad8dbc1454e16977d40f6b0e87c5ed7a901cd85ca265ca2bf32f8f5552a531f
Size
123.77 MB
Last pushed
6 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/k8ssandra-client:0-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/k8ssandra-client:0-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/k8ssandra-client@sha256:03cffe7d86f5654017cefe25631eca5d701811b6cbd81b87e1f3bbaeabe70fa9 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/k8ssandra-client@sha256:7b64e866a79dcccefe8008b77ac2dd99e02d826a7493e8e320df536ed558f76c |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/k8ssandra-client@sha256:fd867dcc6121f884fd76d87980365b7c18eaa0abc286150479cc0419240a2774 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/k8ssandra-client@sha256:6dcb84c83236420fd2ed35ea2b95b9816557916c7436d67bf38fd7d383a3f116 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/k8ssandra-client@sha256:18cf3b3c3c662042d4ced10cfa07408724b05ed1bc1b44ed689360f480e21b96 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/k8ssandra-client@sha256:91108ab0e2cb39c0a86e42ff7d6091eb85ef18944ed033005bc06307e8312751 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/k8ssandra-client@sha256:a602ba530688cf8e1b84a96f7ee141e7733fd9d7117e53fdf816a8a1a9a17553 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/k8ssandra-client@sha256:b32aaf680cd51aca6990bee8745089d6f90b0544e6ab140de875f3ac248131c8 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/k8ssandra-client@sha256:5751735585b8a57b011abe87464ed724efeb0363d4d880be91ef988eecb31d8c |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/k8ssandra-client@sha256:d0f342c65de42992deb38243c0aa63bb2b2f9f55125c416c0a8f2bbd1e752fde |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/k8ssandra-client@sha256:b12edcac6be805322e49d9a5bc8cbaf7595b806bea1c9561552e5d1a566beaad |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/k8ssandra-client@sha256:448a6f64916bf0ed64d456a90e2c1bc3ea552fc8807952428fbb2722b5f99bfe |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/k8ssandra-client@sha256:a1a0bfcadcdfa7664a50a41d555027352e0eb208c958200c3515d01c8977f16c |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/k8ssandra-client@sha256:4fc9fab5f56dc8420c81f9732714bc05ab9dfc2b064cb8afd8f20019cba474a4 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/k8ssandra-client@sha256:44d3711561eecd2fbe3a66d618bc9a6611b174c69333e693eda51ae2c5631e16 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/k8ssandra-client@sha256:55d250d9ac71f7c16733ab3b69b704b4e1b0a45bc757256969f75cb5dec39460 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/k8ssandra-client@sha256:d960dc15dfa75606f78aa6d65ce259da150da00322845dd933a17a7b4953a471 |