Sign inSign up
k8ssandra-client

dhi.io/k8ssandra-client

k8ssandra-client 0.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

0-debian-fips, 0-debian13-fips, 0-fips, 0.9-debian-fips, 0.9-debian13-fips, 0.9-fips, 0.9.1-debian-fips, 0.9.1-debian13-fips, 0.9.1-fips

Index digest:

sha256:afd485058001a53e7bb2fc149d018ecd617c09284f48a41b88a3fa8dc7542883

Manifest digest:

sha256:24b02244ea1e0ffc554dce7aa4fdea2532f3fe5fcf64192d0d9846b13f109cf4

Size

61.06 MB

Last pushed

7 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/k8ssandra-client:0-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/k8ssandra-client:0-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/k8ssandra-client@sha256:318f2fc4aaad829dfb0162efc3855bd839a6a11cd304db071360df1534898d72
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/k8ssandra-client@sha256:d35bf998c031e49a0f00c590dd89b71dc5e828a3d6b8adf4bd55b589744ced93
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/k8ssandra-client@sha256:b16921885bcfe7269428522643d27aa96a362cd16f68571444655415cdc6e694
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/k8ssandra-client@sha256:1b17aaa260ed2fff6f8a9e458dd93a5d072c35cd48921a3950795809b427d4c5
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/k8ssandra-client@sha256:8dfe026d8978af271f9dd2b20797d49a53b629375ca54b70a58dad659ab18be9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/k8ssandra-client@sha256:a620bf590b688fd699f56b23d286c5975ae86f760885a10627214d3e72762812
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/k8ssandra-client@sha256:ed6f3e40a787fd3fa92a6f436ad92c5b146984546a69a694c37f9e6417cd8647
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/k8ssandra-client@sha256:fe450d92d1ed94f10849fdd404fa37f1ac45b79b6b6e827c0d56bf22c666133b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/k8ssandra-client@sha256:419929c513c5ee87db8ac1a4722d771eb2966d9f7a76584dae7df8a7ff3b6c06
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/k8ssandra-client@sha256:9e4198447c2c69c3f8c07c5065be8fb1b733179128b3f9d6011ee152d2109871
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/k8ssandra-client@sha256:1a086282bc2800538f275ef4280364d06e87f72acdf42cd39b470b8ad3e0093d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/k8ssandra-client@sha256:d303656db467f83065be5f046719cd302cdddcb86bd5e4c2f671ec7b6bf14f10
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/k8ssandra-client@sha256:98ef510d510c34cafe8dff351c37f620b516e96723b8f067cf599eb932d19ed4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/k8ssandra-client@sha256:dd2d1d9702d29f3ba325f918081b8175a143db71aaa86fd224adc91b3454270b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/k8ssandra-client@sha256:2c7a408c3436db7f62405a4e4108d1e309b7d46c8d86c87fd886c0b4f9d80d9a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/k8ssandra-client@sha256:73b4bac879a84fb06c2d68eedd8fde6311fa46c02e7bfb0e4d2a1c311d0c8103
SPDX SBOMhttps://spdx.dev/Documentdhi.io/k8ssandra-client@sha256:e06bf9fb63741f3a4d29787eafc3de5097f719c686d05715e126df6c7fd58fac