Sign inSign up
KEDA

dhi.io/keda

KEDA 2.20.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

2.20-debian-fips-dev, 2.20-debian13-fips-dev, 2.20-fips-dev, 2.20.2-debian-fips-dev, 2.20.2-debian13-fips-dev, 2.20.2-fips-dev

Index digest:

sha256:cb71c280d2b09a65a37ed89f7fcd9912ddd9b500c0d132f09e1c6988cbf0f03a

Manifest digest:

sha256:0aa6f33337fd12defe94eaf8b9674be553ad2efe05aeb4865a91f5b116db3e18

Size

103.03 MB

Last pushed

22 hours ago

Vulnerabilities

0
0
1
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/keda:2.20-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/keda:2.20-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/keda@sha256:44b872fb2c68e585322e63b9fb446a245e782eb3dae0719f23e10d8df0918e73
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/keda@sha256:2fed15db264033fd188bba3770342843d58036e34a6fa6bdd0c01b96ca36f12d
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/keda@sha256:ba4be9b7afc468bf46a9e43054d1663f1744d078f2603d8553276807cc862b6b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/keda@sha256:950ce62bb07a8562ad8d02a31a3e333e75eee6b8086663bac4e65d537d39a2a0
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/keda@sha256:a2060b43ad5f621bcfdd5e9cf431d8089ed45cdfb5472b6e324be2ff4a71dfd4
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/keda@sha256:7943f273552204488886ae49d907450b62583bd1c0e07f57214b2e5b049f86bf
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/keda@sha256:d7e9d9129e1248ed322c2b38e1c350e6155279047b9eb69ecd74c6ac5b7a8842
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/keda@sha256:cfc284bfebebeaeb7aaf46197a7f67dceb2648d7b14da7f00f77823c57c8550f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/keda@sha256:c1be161b4e33b4c714eb90f85f79ecfd03163297207e255eedd14e68a64618ab
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/keda@sha256:34b6cd29ccbecff21c4ab69e5a66884333736f3a625ec72ba6dce2fb9b1ee440
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/keda@sha256:5be04b014bc2bb0d5d2d018598cf9678bad2adf5de2f31155e6fce96a2ba4e88
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/keda@sha256:845df5c614a8f16d1bfd035246588f81eed9e6db30feeafad1a331c9899cc00d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/keda@sha256:e4da60fe8a2d1cd3b17fa2b247182a6ce75a69f2a0131fcd180f82130187d87a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/keda@sha256:e7927e8a9c1fc418bb04631d1679f7ced3b843261d37a2e49409f790fbf09590
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/keda@sha256:3c59292b5ae26f83969c2a10933338527a8afee27bcfb6093736743a8fa8acb6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/keda@sha256:47aea45bd96249947ffcbd4afe0f7449133de353bed5d4d3ed1ee6c08ba00fb4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/keda@sha256:d6098ce8d11ce360e571b3895efbfe787ce15b70dc25ff5b76ebe1eeb034ce01