dhi.io/k8ssandra-client
0-debian-fips-dev, 0-debian13-fips-dev, 0-fips-dev, 0.9-debian-fips-dev, 0.9-debian13-fips-dev, 0.9-fips-dev, 0.9.1-debian-fips-dev, 0.9.1-debian13-fips-dev, 0.9.1-fips-dev
sha256:e2d372dfed9410d78c88aeaff7c334d3ad1161370020c1caab837355aff190d5
Manifest digest:sha256:d515227f3d5c06e0d270cfe6888deb6cd7f13886737ab8cdcb2bbf095b3407c0
Size
123.77 MB
Last pushed
7 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/k8ssandra-client:0-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/k8ssandra-client:0-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/k8ssandra-client@sha256:aaa8050b590a2dad08366a40310f0d6cacc6b3bcee75a6c49ab3c0ed8bf881c2 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/k8ssandra-client@sha256:828795d0008c3d24510c03e3fcb406ad068509f1a92437a9bce51f441a7c751a |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/k8ssandra-client@sha256:b67ed884d056d9dd64c69ff4553b52a3125210217c567b29246dea9b24ce51e2 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/k8ssandra-client@sha256:94882ed6cb7efcdc4a1048d7728be94f39d61a40c1b361ff335eb9a7bf01d170 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/k8ssandra-client@sha256:4e97aa2572c8a0bef18329f0f81c42e8dcc9c1f79aebf36301e7649cfa86659c |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/k8ssandra-client@sha256:f0be7a8bb18e2a5d2e613109abe90fe0a5473b64fd30dfe84c373fc0fe4e4ec6 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/k8ssandra-client@sha256:0b8c899811f275b796a1bac179d9f6270b029cc9da173c51865393aeffd6e89c |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/k8ssandra-client@sha256:c5fd4f387cea2dc59d2bd4653ee4430e4df3aa53193fafc8e23015de1cdd0c32 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/k8ssandra-client@sha256:68de0b3c840df3014cb0902f5dcae660c961d48a86fe31de1ceba841bd4ce744 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/k8ssandra-client@sha256:bcf40e6fec4c7b161d8f843acc154c7ea17b968db3a8ba7dba9146080bf1e55d |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/k8ssandra-client@sha256:e63bd849df115083c309835885dad1b14dc6ba33e2968e21cec54f1988ebd747 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/k8ssandra-client@sha256:e32591f45ff6e867bcc8d2b542f3d41eacd83ddb4af9f181741f970209f3182e |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/k8ssandra-client@sha256:c1363f430b31a9893226bab39bc4dfc18233fbad05b77cc82b93735c783de9f4 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/k8ssandra-client@sha256:4f8ea885164b6098c1bf0c841f067639c47cf79d3141be284561b26820ae6261 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/k8ssandra-client@sha256:edb7296f640704a4272086cfeefb725a9ba3f2d1bf06fe8ac40f1253cf3b8919 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/k8ssandra-client@sha256:504c24c15ff744910693716c9632d54efa9b4d993edd410eb2bf3155400800a2 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/k8ssandra-client@sha256:76e5e142ff574c5c3143ed65fc01ca232a2b12b04c175209b5fde0187e338696 |