Sign inSign up
NVFlare

dhi.io/nvflare

NVFlare 2.9.x (dev)

CIS
linux/amd64
debian 13
Tags:

2-debian-dev, 2-debian13-dev, 2-dev, 2.9-debian-dev, 2.9-debian13-dev, 2.9-dev, 2.9.0-debian-dev, 2.9.0-debian13-dev, 2.9.0-dev

Index digest:

sha256:fb40ec9af718561c12185c1c4b20a573b1e38dc2a162fa5ad609d7232ad27870

Manifest digest:

sha256:d432e40e4e8e0651e1b2667001be1d7ec696bf0e1cffc0d7f011d02fbe501271

Size

67.08 MB

Last pushed

23 hours ago

Vulnerabilities

0
0
0
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/nvflare:2-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/nvflare:2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/nvflare@sha256:a6701229e42ec647426a4c3f64abd345670a6ed057527d247a86c08296b3ff50
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/nvflare@sha256:cb4eeb4f0d89fef2a062474feb21c5077d4b298198e04ae47150cccef4d05217
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/nvflare@sha256:bd2c227bf0a3df371909a3d817b894b5f93a363cd3ed7ebccc61a36312c6dd79
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/nvflare@sha256:f8962dd66f64d6e1118ac0e0a7959815ebb2116044d1b2fc8a6073e3b41da141
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/nvflare@sha256:352980e0af13d2ea67d25d0aed5fc3311d19a689ab4e53c7b87914a25b4cb269
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/nvflare@sha256:9f2469143ba67e1439e836f750a157c0f87c39341bbf8fb937563d0db41eea07
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/nvflare@sha256:c0bf970ed9faca72dfb600ac872084c5404db247c13315d723f67a1059c29045
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/nvflare@sha256:bf4b09df7a9426d1ebee5baf06c613173de5db4c38e944526f60af5077aa7a80
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/nvflare@sha256:632df8ce506954291734e2bc9bd4f57eaec336049a13cee3e8d67582c7921b38
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/nvflare@sha256:1c50dd84106e3a97f3d2f188a8867f453fd7218e8486d6ea8b9bf5cd0d8cd466
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/nvflare@sha256:fe32ded79578a85ac72dcf1186b3621e7ede0dbc1b576a015ce72cc32cebf684
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/nvflare@sha256:798fe97869724534af98422c22ed2328bdbfaacc58687c260de6d4fab984532b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/nvflare@sha256:e3c4d5f969f7d39281a9d82c2f86f8d3f8fa806dbf31d2e795e1a8137f02cbf8
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/nvflare@sha256:b2c7c7ae6b42f20139487824103c532c2d32b4065ddfab624a1e5e49601b22cc
SPDX SBOMhttps://spdx.dev/Documentdhi.io/nvflare@sha256:c06b15df070be024c3d9f78f671967a0f62f7158c5657862fc5318c6c16a2f30