Sign inSign up
NetBox

dhi.io/netbox

NetBox 4.x

CIS
linux/amd64
debian 13
Tags:

4, 4-debian, 4-debian13, 4.7, 4.7-debian, 4.7-debian13, 4.7.1, 4.7.1-debian, 4.7.1-debian13

Index digest:

sha256:a981f3f93658edf2fb21a0a171e6086d88568d8d36f6db6e7b997c6232e74f7f

Manifest digest:

sha256:e8bce4f3f28fc749b9d686dccfe02a853b7718c0e1b2a47814ab5b2be5e74715

Size

120.14 MB

Last pushed

13 hours ago

Vulnerabilities

0
3
4
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/netbox:4

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/netbox:4 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/netbox@sha256:13ea10b0a7232ce92a19f451383701f6c510c10ba31bd60ae9094d0ac7aaf5bb
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/netbox@sha256:d54a22274347184bf053e15eaebf6c0fed43ae01803e9ddfe3c446a75f1125f0
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/netbox@sha256:f1c8363cbd2fd7747919d7b280b2a95f4862fc51be568604fd56d28d3d548dc7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/netbox@sha256:b3b66ef9f6f3b54557da35c4240e09eae3831f95d6fc756e1308878634714672
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/netbox@sha256:3d54eefb84d88f4dad3e0889a3df69e408810dc85db6b300e0ea9b7c9fc16528
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/netbox@sha256:86adc5725e4bd2884c5064918d5c9df58d8d7a2897ddadcf16c36bd5d5941560
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/netbox@sha256:f33ea46ffb3e2ea34dc0fa704b3eaf827e1c995bdde9453d0cf6cb1b731f72ef
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/netbox@sha256:67329fb5e9acd083a3bb12a457addf9e20adf4b6af48b762c5d76436662e2776
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/netbox@sha256:9b253dabdedbad78aa956a168f4bedefda1f9c687a4a1a72e7987ad72733dab1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/netbox@sha256:0d1b310f7e8247ffa5b9348e43f99d0a2dfba0bcb7358a7e9677d1f9e426b962
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/netbox@sha256:e95aa21f0e2cd6bf52b4494b69ee3bad5f424d8127be7b944eae5258079fd5c9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/netbox@sha256:2f6f07ca61edc2165b20bd4f1a2f2becb3e2b519a5a328c107aafda89372b396
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/netbox@sha256:66f928ebf395a2d7c5c9314f44a69850cda8887a287d9ed6b9957592a1b9b9ef
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/netbox@sha256:349f07f0d54baf6ad4ec7c1c89948ef71d23f44647dcba7ec2e2c8a42b83f3c0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/netbox@sha256:0bf33126aafdae4f3caf3fd14e857b610cef75a948b9261f6d071eb5c73bcc81