Sign inSign up
Rook Ceph

dhi.io/rook-ceph

Rook Ceph 1.19.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.19-debian-fips-dev, 1.19-debian13-fips-dev, 1.19-fips-dev, 1.19.11-debian-fips-dev, 1.19.11-debian13-fips-dev, 1.19.11-fips-dev

Index digest:

sha256:5d020f64db4b4b4070ddddced5aef3160a2007be665d095dba2b4765f885bd05

Manifest digest:

sha256:e67e2284525ca3c947145c71b298b2d1156cc5e2a3b383326cbd4725d4c335c8

Size

371.74 MB

Last pushed

5 hours ago

Vulnerabilities

0
1
0
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rook-ceph:1.19-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rook-ceph:1.19-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rook-ceph@sha256:186568bf744a23067b393c30786e2980500a346116d19c84fe0f4993b28c7b7b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rook-ceph@sha256:c8dd6c9710dca523e9c61100b1b9c6bf1cdebaf9038db9c986435fd79850a7a3
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/rook-ceph@sha256:42e5bf2a84099fec82562e8cf9e27fc7f2321a27c2a6949b6bf8cfa9bc94047a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rook-ceph@sha256:7ba4a6adb53071678f69a585795e5eb42a9acb67037bf1696c48ab32da59f96f
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/rook-ceph@sha256:c921189024393ce33e81685ca113a3fe391716183a3384f6e4e75b16d89ffbce
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rook-ceph@sha256:595107e413cdb4e1f91d8edfc1a8cbf72c305ba744c251107501366fcedc362d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rook-ceph@sha256:889e7d426ce309318d985589543cf2a1c25e4dd59b15c5211aac7e6979ece355
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rook-ceph@sha256:6823f1a72500506c9aca2f48feaafe62df53e19a0fd2d618303e92640f71e223
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rook-ceph@sha256:232fc39eac8caa57ebef7605a012babbabae0ab2bf4c06f80c85df11756d9b33
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rook-ceph@sha256:8c44a5f9eb43ab5f52354ff9e3bd784093a5afde85ade2e6a40c0f80d1fcfeb1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rook-ceph@sha256:d596748515a757ee3814c8323709e0c5ee9ed7602b2b78225297809b3d9b3599
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rook-ceph@sha256:cd626360c980a4214ea2ad9fc96c6f1d70e6ed70b8cee0bf6d5db400246412a9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rook-ceph@sha256:002279614da96ab9ef29cee03758d04d65c0cb78f62a90cb589a6969377113e9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rook-ceph@sha256:efc06b46a07c0cd5f536d6def5e8b26c47e64b7ef66db42405dd2149643416b1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rook-ceph@sha256:a07a7db874f415e4fc47748f9a02d896e77b7791a3cd261a08fe798c2961d297
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rook-ceph@sha256:62206e7952feaa02277ee0295c0a26a6713a3725b63461fafb75b95909c12c5c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rook-ceph@sha256:5c6717a3b40816e0e38bc9faa3dd166672591fdaf71a9c0f4d5d8144511dcf69