Sign inSign up
Rook Ceph

dhi.io/rook-ceph

Rook Ceph 1.19.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.19-debian-fips-dev, 1.19-debian13-fips-dev, 1.19-fips-dev, 1.19.11-debian-fips-dev, 1.19.11-debian13-fips-dev, 1.19.11-fips-dev

Index digest:

sha256:2d494a94ef5705aa1a1f16e2a2d5beef5ef257ba796dd72e9c7dfd2b9a2ee1fd

Manifest digest:

sha256:acbb6f3e313dcac9c68b7313bcc64e09e7c6774725c36e22d3f116bb77bfdddc

Size

372.68 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rook-ceph:1.19-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rook-ceph:1.19-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rook-ceph@sha256:80a9a30ac77bdfe7751e3db828911180e16c6cfdf0ef168a111787671b1f25c3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rook-ceph@sha256:dd27422c39a72fe836f50223afda61738358881c8114a9966a5fd4e39b082a62
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/rook-ceph@sha256:916b2af8e57d16c4ae8c8f0f1862fb46ad69412a1b27b277390238a98f3f70ed
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rook-ceph@sha256:63076b0b466fb6cef172e239c29e5fee84e13aabe190af7c87d4253f30adb4b6
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/rook-ceph@sha256:202c1c038b81050320b7b486a985dd5bbfa574dcf7d7317d8e5ac1b455469ea7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rook-ceph@sha256:845669f4e15aa4a4d9e8e78edfd2e2aa84dc81988efe058727776b1edf9c64e8
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rook-ceph@sha256:66c9b453add8778fedc24ee7683da0fb66f6b7475161ceea06088c2886330454
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rook-ceph@sha256:bb73ba2fa585bf797d9303ea61c348122f926422d2deb89946c0da1f3b86cbe0
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rook-ceph@sha256:f18366214d7f0a1856fe24fb6334e59be41fa54d7c03d541c5f14285ae5ccf1a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rook-ceph@sha256:e6788c300aff45b0aa1f6e249fe6fd1fe8aee0040b241f153f7643176e7a4567
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rook-ceph@sha256:bbb1ad13ca90828adfce4663838d553648c551f0cb532625c9c5cff0247270e9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rook-ceph@sha256:4f7dd59e21031b28fd3d73e63a211446b205d7d11975a36ef9d9739b30af7f52
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rook-ceph@sha256:b50f6fa4f621ea37bb6bd3b79cfc29141ab8eca79769928ea34b7112f4243208
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rook-ceph@sha256:add2b40edc035c527a6765d01073295b53ae539b44e27b2adf9d9c5baf633437
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rook-ceph@sha256:e82ca44762ef0dfaee4a0abcc4960f8821b3b40512c2a01b32607a23bcbf4fba
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rook-ceph@sha256:da55c794fb158e567e031fc174310d78882e7a84a7742719eb5cebf5a4bd2d76
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rook-ceph@sha256:7cb727005a4aa72b56606096d2bf773487218e963424a1529542f10a0c1cabd8