dhi.io/netbox
4, 4-debian, 4-debian13, 4.7, 4.7-debian, 4.7-debian13, 4.7.2, 4.7.2-debian, 4.7.2-debian13
sha256:c79afc487ae18b927d00a2fdabce761b4a58f8d22374f41ef546646220ba5c77
Manifest digest:sha256:35fa5001b45c75f5644d2844f50177cd5418d35ebf1ebc8e2040bc86e468cdbc
Size
121.29 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/netbox:42. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/netbox:4 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/netbox@sha256:6330e5952f3c65c7cb26a23bbca1d1eef210222f25ddacd1e0a86a9dc2ac337b |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/netbox@sha256:35955c43600a668a4b5a72789188357aa7ae83e066c8e33e04d2d718bd535abe |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/netbox@sha256:7606e030e8e4b8f4a6ea5444b338f393fde9b04f8a23988c2f7e767359d60bf3 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/netbox@sha256:f47e4d8fff6622d58dfeefd72f510273285f6760783c0a80cb2324b8f362ecf2 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/netbox@sha256:5d8745e0f1028426a619bb38ea918201b1e9d3fcfc363b376769017d234f57f7 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/netbox@sha256:ce3488947930aee45d686848bfed4d9283155017dd7735f7f04a9356da85c4a8 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/netbox@sha256:4da1ebae356bec6519f9e49599918340803b23f10636ef8f58fa0c367d0ffb7f |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/netbox@sha256:c37f47342b4a4828fb96c10899f201f95a13040867afded94290517639753e57 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/netbox@sha256:dde839d95ca854faae22a79c588193355345fd7c9136fadd44d65d6883499d0b |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/netbox@sha256:c9bb2d1e31b9e3234c32a2f278445e7d9f95b7caab29488153e54bdce32530ad |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/netbox@sha256:be354c5bd2146cd83f4d09b3e515b2f6237d4408da2fb0f85e18ed67363291ea |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/netbox@sha256:e362aadf3d6583fcdc23ce14d5989fb7faa283ad210257e241fdebd3c30462f3 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/netbox@sha256:8f774d9f9203564b04141ef713e5cb7a2cf93ec077c23205897ec742274a9322 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/netbox@sha256:4b62b4989fdacce09d9e6102b9db20cb697190531e69dc129a2fd6d05592406d |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/netbox@sha256:962a0d1ab7a080195dfe519d8792662d40fc9c9710b8f789421bb7d14240516b |