Sign inSign up
Rook Ceph

dhi.io/rook-ceph

Rook Ceph 1.18.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.18-debian-fips-dev, 1.18-debian13-fips-dev, 1.18-fips-dev, 1.18.11-debian-fips-dev, 1.18.11-debian13-fips-dev, 1.18.11-fips-dev

Index digest:

sha256:b0bb3971675eb17f82c891f3f4e6deac0f1f0780f50449c5d33da43fd10eebf3

Manifest digest:

sha256:36fb5c7aa8345eeee286c9736f4e4b70c1b1e92810ec4b84b7c8d3c80288c2fb

Size

288.62 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rook-ceph:1.18-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rook-ceph:1.18-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rook-ceph@sha256:52518ce0fdb13343ee83785619d48088debd051f1008dd74738cb4c5e7de04af
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rook-ceph@sha256:db5b795419e9308c720ef8b8b614ffa9730f90f3b16eb72a8f72941bb57e5219
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/rook-ceph@sha256:a4a73498269d949be2b13cc364311ebcebef519ead45130cfe8aea533a5cdb3d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rook-ceph@sha256:912afde81c6206f3d4cab5d4194110b518dcf7d65c67f92a82dd7313f4e1268c
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/rook-ceph@sha256:72f032df916f64361d7a4011e27f7224dc7282df7e483e5f22e77742c83634ce
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rook-ceph@sha256:24d8c4a996e6f34811dd98cdc83d9a4f8277b3a269b875d51c5577d7a8e0d60b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rook-ceph@sha256:15c7bb62d65ae22b30f977e062b71fa1e57e42062dd41c8991e8191a3661b055
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rook-ceph@sha256:ebc9c4e8e749861e9a9ec4492849e921c33a5898d8661208a0d7e9be9fd34702
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rook-ceph@sha256:d7201ffe93ec9e24527d7f18976302319ed004b94d3c4cc14fc2e55e13040f87
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rook-ceph@sha256:7cfa5592b2621225db94669560ce76555cdae782004bbc3067a99ebe392cde78
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rook-ceph@sha256:bfceebcec983b1e14a94e3ff9df6894eced4b4be38e865f05bb334d332a5ff27
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rook-ceph@sha256:4af1ffbe8c036ef202247a2615a8a06585cdfa6ae813e9aa103a777169608a12
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rook-ceph@sha256:69cb8916c8d849ee32ad721ef99691a0f590b1b051b9a3910fbd9522b226930f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rook-ceph@sha256:0719b3c5a7984c6c82719ec093f2fe56dde52552ca5d6c6d47c4d9b309c08f86
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rook-ceph@sha256:2ef100bdb8b375bf0133f05b8b934865977c425bb743a62f965e0637d7037401
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rook-ceph@sha256:4d525818b229641530a5fe0fbaed3e1e4ed851981159ffba25d6f22093302fb6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rook-ceph@sha256:2368603004181a1042a8e66acf1bf45d6aa31cb7c541edc6f2c6261eb3e01e32