Sign inSign up
Console for Red Hat OpenShift

dhi.io/openshift-console

Console for Red Hat OpenShift 4.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

4-alpine-fips, 4-alpine3.24-fips, 4.22-alpine-fips, 4.22-alpine3.24-fips, 4.22.17-alpine-fips, 4.22.17-alpine3.24-fips

Index digest:

sha256:f5760fe8049d119a1179b218f4c254b066847680d0c93e6b443f2801ccbb6c8b

Manifest digest:

sha256:7fcf788abea9f22a90ecac27a9255e2f59c943589db19b3c0de5609da1208f76

Size

30.04 MB

Last pushed

1 day ago

Vulnerabilities

0
3
5
3
13

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/openshift-console:4-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/openshift-console:4-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/openshift-console@sha256:e7c4bb24c1640d3eeeec1066a3247df2ac86c88e31fdf2062620537f4f862a34
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/openshift-console@sha256:1ec8ee48da136faa842d998b965954c5f031eb06e0e1f3ba32009ba80b995ff7
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/openshift-console@sha256:0be19745406838cce8eaa0c6b25d0d3129a06c82cce9ec0ae72d4823e303c4d4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/openshift-console@sha256:a4e803b4fbbce5a97b4099c1cba1a2e48d24fab1034e8c642605e189fd7ec305
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/openshift-console@sha256:2e31ea9f361608e3c7e8426e3a574ffd6db672c6f9baf1a5f4dc72151873fa25
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/openshift-console@sha256:11f308eac3c26adc68c691810c23f9346b94949716a1dee5ce272b187433359b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/openshift-console@sha256:ee0d1c447b32b3503aa874b0906e60502f4f91c72b25c49fb8dd1f9e6c829a0e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/openshift-console@sha256:c4dda480944b111f5da1cb5e1d576ea46bb9a155fcb8fa18c9dc2c59516a3333
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/openshift-console@sha256:0dc4ff2b684497bdbfe09cccdb7186aaf540e8c7ad03a68ffb092c4b87c5eccf
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/openshift-console@sha256:ac9891526a96678a8c7c8a2c23b23e3976081dd6f225f10e7fc601797e5736bb
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/openshift-console@sha256:0f6c77ec5c74bd1b5cef206e8e49ab76bd19feba72d465883d1664b51ea4a506
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/openshift-console@sha256:210491e5b89413b9a299bc0c323b088cd7142544a1fdaf4d915d37faf2f931b9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/openshift-console@sha256:59049dd009348ccc4d209afc505496f0eb4bec63b67f2c5e2e41bfe26cb5fb93
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/openshift-console@sha256:fe56f65508f0f1a072a925af597057626342cfa394be5781555db04c431b08d4
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/openshift-console@sha256:751c56794915505b4d53c0a43909c34c95a4c3d50c8a4bbdd77899d899ed4d28
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/openshift-console@sha256:4f36398fc28a3b6ca51ae797369ec4d9b4c1c09cd97f248706eecd8fe2e1fe02
SPDX SBOMhttps://spdx.dev/Documentdhi.io/openshift-console@sha256:d33c4bfb1af35d3a9e0d6f962260f4c60a5f16502bc01fa7bf4b21805b9240ec