Sign inSign up
k8ssandra-client

dhi.io/k8ssandra-client

k8ssandra-client 0.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

0-debian-fips, 0-debian13-fips, 0-fips, 0.9-debian-fips, 0.9-debian13-fips, 0.9-fips, 0.9.1-debian-fips, 0.9.1-debian13-fips, 0.9.1-fips

Index digest:

sha256:ea659f5f4ee08c97eb30c09eb018a07e9097f6a748e6563257e832667cdd48c6

Manifest digest:

sha256:da3f20b19ea98a7d5ed6c2bd2e404a8e9c717c67d1ffc330d054e9b615eef7fc

Size

61.06 MB

Last pushed

21 hours ago

Vulnerabilities

0
1
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/k8ssandra-client:0-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/k8ssandra-client:0-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/k8ssandra-client@sha256:dbd159053aff4070ce35335ca5049f1455a95548c0f9be003723f4d7d0800be3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/k8ssandra-client@sha256:9208299e7032af785cb4afed9983b7765b47cb99c30445947cfc31e8a8665007
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/k8ssandra-client@sha256:2ecf147a57aaf30b085a9a54af78dc45fa8d6271e22cfa4852931d6e8852e89b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/k8ssandra-client@sha256:3d892f47788524fbbd90d73488761ba848970acd1609edf4c8ac41fee92432d8
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/k8ssandra-client@sha256:a2c61d8f7c9f2bcd822fc0656d481b60fc3d0de4ace2f239619169e1b83a1b2c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/k8ssandra-client@sha256:cc7a09ae09504b6932e1e90bb29da14cc5bfa878f0fd2c6dca3ae6e05b2c0643
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/k8ssandra-client@sha256:9b269fe8ff9a1300b684f88e7f683596b0a09a44f4f51c818c982719fce8e3f5
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/k8ssandra-client@sha256:38b07ec4fecb7b6385ea3a3ace2c747086ca4fb4cc5ff48bcfefc5aa762965ae
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/k8ssandra-client@sha256:5b604a520769d1758766649b3787466e4da5ded6d84437604250d20ef494ea30
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/k8ssandra-client@sha256:f498321248bf5a8d51f41273ecafca9d085e7aeef3c827f85e3ad88c206225a0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/k8ssandra-client@sha256:a11d7a3fe2916ddbd3016d27edf408df2f9b780360d7af3905fe8dac6d8999b4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/k8ssandra-client@sha256:0418bd65e17bf19180bff67eebf503aeaae2c02120e6aa18725cb0b64b929356
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/k8ssandra-client@sha256:49318e003b99b71b2277c79a78d82b29d81ddfba9fadc89e8d85756515036c5a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/k8ssandra-client@sha256:e00d8e9f6130b037ff5b96175281db4aebb914127659a9ed24723cf2a00384c3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/k8ssandra-client@sha256:b37cabf6b31af059e0317ec7c4bd1031a6cee9ff2ce906929d66e9c1eae5e67a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/k8ssandra-client@sha256:f6d89c42c17cf4e03e617ca0b68844a04db17194c80b5ee4ae2621276aaa6f25
SPDX SBOMhttps://spdx.dev/Documentdhi.io/k8ssandra-client@sha256:48f68091a2f9a034f95aa14999ab1d09be7cef31e4f9b0c03055e9821837d653