Sign inSign up
NetBox

dhi.io/netbox

NetBox 4.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

4-debian-fips-dev, 4-debian13-fips-dev, 4-fips-dev, 4.7-debian-fips-dev, 4.7-debian13-fips-dev, 4.7-fips-dev, 4.7.2-debian-fips-dev, 4.7.2-debian13-fips-dev, 4.7.2-fips-dev

Index digest:

sha256:17d527332ebcb522823d883bc1c5fa48056a3371163d2349a30a9131431fef2a

Manifest digest:

sha256:97248cc1712557bce28263b6f538bf048b4a76484fca1912c854b68df10c33c1

Size

130.37 MB

Last pushed

23 hours ago

Vulnerabilities

0
3
4
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/netbox:4-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/netbox:4-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/netbox@sha256:7f6c92a16a28409bfc47a79129c3785a6deae7bbba1a21a79d044cae13c3f10e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/netbox@sha256:572e2b0e5abdae9b117fffd23551d6a09ec90be896a28d126bf6c1cac6e8b0a0
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/netbox@sha256:798c2560d1e44d9f36337ef0e31fa4fa45a851ada7150e8a95de86d6e1cad3ca
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/netbox@sha256:2fb4c2c60a2b727242fa3775ebf1bbabccb1c8bb80c4f633525ff6adfcf76ab3
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/netbox@sha256:a9a8ed71a25fedb911aab810eeb1d2d94a59bfb70810d9ce89e260fc0088ea52
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/netbox@sha256:1d8fd7ba40dc607bed5a391a62c7a8679babbf46be93a26fe6b93172e021f0cb
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/netbox@sha256:89c6495dde5a9272acd9c3d7e129b1f9f2ebefa2e7419c8748392fa01ef0a291
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/netbox@sha256:506b69aaa2dda1d5cedd1a7a589956993815218bc04a42a86d8854893b1605bd
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/netbox@sha256:6b7db814d60f070040c92812dab53c1e063152f00278f5feb40f9845a29a4ced
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/netbox@sha256:8207d8fe15435f424078345e7a46e9eefd845d13c732de931f57bbe54247ad43
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/netbox@sha256:7b4af8accbb7fbe15a954a43b15806c42091c1eaa7a1dcce38d1f0f4838cbb0d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/netbox@sha256:629c6242a12e668f51be9dafa1d35121cb005655f88c1f1931548dd851394bb6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/netbox@sha256:20fda8d0765355c95a98339aeb45ea201b854aef9a7b3e4e2978834ff4188f44
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/netbox@sha256:914d7cb62a6c5f3b4e4091c459869135be7090ffaae85313fc8bfd90ba6bff93
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/netbox@sha256:26d32ad196b727a82519b8da5bea768869081025e70d31773cdfc6a9e9426304
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/netbox@sha256:d8a12a32604ffe3396e74a5cbc21455144dcc943af553ff251b99e142a0700bb
SPDX SBOMhttps://spdx.dev/Documentdhi.io/netbox@sha256:fcf5e9c8dd8f99335c26dffce753126ee8f35cc9b6eb7ad7107a8bc89757da8e