Sign inSign up
NetBox

dhi.io/netbox

NetBox 4.x

CIS
linux/amd64
debian 13
Tags:

4, 4-debian, 4-debian13, 4.7, 4.7-debian, 4.7-debian13, 4.7.2, 4.7.2-debian, 4.7.2-debian13

Index digest:

sha256:c79afc487ae18b927d00a2fdabce761b4a58f8d22374f41ef546646220ba5c77

Manifest digest:

sha256:35fa5001b45c75f5644d2844f50177cd5418d35ebf1ebc8e2040bc86e468cdbc

Size

121.29 MB

Last pushed

1 day ago

Vulnerabilities

0
4
4
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/netbox:4

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/netbox:4 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/netbox@sha256:6330e5952f3c65c7cb26a23bbca1d1eef210222f25ddacd1e0a86a9dc2ac337b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/netbox@sha256:35955c43600a668a4b5a72789188357aa7ae83e066c8e33e04d2d718bd535abe
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/netbox@sha256:7606e030e8e4b8f4a6ea5444b338f393fde9b04f8a23988c2f7e767359d60bf3
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/netbox@sha256:f47e4d8fff6622d58dfeefd72f510273285f6760783c0a80cb2324b8f362ecf2
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/netbox@sha256:5d8745e0f1028426a619bb38ea918201b1e9d3fcfc363b376769017d234f57f7
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/netbox@sha256:ce3488947930aee45d686848bfed4d9283155017dd7735f7f04a9356da85c4a8
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/netbox@sha256:4da1ebae356bec6519f9e49599918340803b23f10636ef8f58fa0c367d0ffb7f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/netbox@sha256:c37f47342b4a4828fb96c10899f201f95a13040867afded94290517639753e57
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/netbox@sha256:dde839d95ca854faae22a79c588193355345fd7c9136fadd44d65d6883499d0b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/netbox@sha256:c9bb2d1e31b9e3234c32a2f278445e7d9f95b7caab29488153e54bdce32530ad
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/netbox@sha256:be354c5bd2146cd83f4d09b3e515b2f6237d4408da2fb0f85e18ed67363291ea
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/netbox@sha256:e362aadf3d6583fcdc23ce14d5989fb7faa283ad210257e241fdebd3c30462f3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/netbox@sha256:8f774d9f9203564b04141ef713e5cb7a2cf93ec077c23205897ec742274a9322
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/netbox@sha256:4b62b4989fdacce09d9e6102b9db20cb697190531e69dc129a2fd6d05592406d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/netbox@sha256:962a0d1ab7a080195dfe519d8792662d40fc9c9710b8f789421bb7d14240516b