Sign inSign up
NVFlare

dhi.io/nvflare

NVFlare 2.9.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

2-alpine-dev, 2-alpine3.24-dev, 2.9-alpine-dev, 2.9-alpine3.24-dev, 2.9.0-alpine-dev, 2.9.0-alpine3.24-dev

Index digest:

sha256:62c8644c7eea84bad3403a3650ccc3795f77d239fa8375cbf1e3031661893802

Manifest digest:

sha256:0e47488ed8d55dd76015970936320febdae13eb255d2eaf286aeb459078e041c

Size

57.68 MB

Last pushed

23 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/nvflare:2-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/nvflare:2-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/nvflare@sha256:b29351c401572ca597b596a360a186e555ece336580f233e684223f6124499c0
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/nvflare@sha256:b6fde298637ab3c3187abb424533018fc8b59861c0b8bd3532f2e80a5acfd098
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/nvflare@sha256:e8151ed816d03c0982bff8f591e3dab50058555a9ea94bd9e379d629327ab5db
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/nvflare@sha256:bab7193fe0ceb99ebf1c4e0997a4f987fc8a9e838fa340ab1a0f59b3b42d75b6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/nvflare@sha256:191a367ba09ed4a9ac59b96875bc589cb7c97c0099051766ed9be0eb27adb583
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/nvflare@sha256:15f090b08670de086c60c0f02e38501b269d9bb4f4c2c6a53bc5c528e9e7df3b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/nvflare@sha256:89afc754a81fe639a8c9b12e328c66c658a9008b6b56aaa19e085d597d23f4ce
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/nvflare@sha256:f6e94bcfacea0d192f32783acf41111a8b9f5856e8c20666c35d309068ddb0d1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/nvflare@sha256:850dfae8b8be556f71815368aed17eb89b5e5933f74b86e62377ed2e561af6b5
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/nvflare@sha256:5f45da5bc59b6a2dfc078eae6776fb7ee232ab12cafc2e16804e16a8f8108b06
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/nvflare@sha256:713009a77bde9e933eb8f936a4553b1336e297117badd6dbb5b1b7213a475089
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/nvflare@sha256:ee6324d5731580025804b9ca80bdae1b62ad9051a8f0a1dc31af40e42e9f46ac
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/nvflare@sha256:ec745b00b0fffc708cff5c9341334340bcf508ce66fcce228147b6b650b3bb8e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/nvflare@sha256:276d43ef110c1cc44906b0f9bda3daa8b7480d0b0e7837ff7649e55605cdd3eb