Sign inSign up
Rook Ceph

dhi.io/rook-ceph

Rook Ceph 1.20.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.20-debian-dev, 1.20-debian13-dev, 1.20-dev, 1.20.8-debian-dev, 1.20.8-debian13-dev, 1.20.8-dev

Index digest:

sha256:ea30b5bcbb23b54fb264d22fa1c063f72a73e7bec0fb76b5f13f5fbc718ae6b9

Manifest digest:

sha256:8f5e42bfbd6736d719c9bd36f0f8e95374fe1e98882d1454bbf1970238ca6225

Size

370.69 MB

Last pushed

9 hours ago

Vulnerabilities

1
4
1
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rook-ceph:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rook-ceph:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rook-ceph@sha256:00fe733727066c533d84e01a2ef56cfb7894340efe5d0a5b5f4d67f9f5022353
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rook-ceph@sha256:e1ee0142ed8f7dc8543e24c25a8c942b491118a0ff92567700a5b597b913fde9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rook-ceph@sha256:b67659dd6fb02e5ba4e2da51e61abeb217e7e769caa72ffa315340fd691f11f0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rook-ceph@sha256:b2eb977905d04e2deb2b980da53ddd2ce305ae2b2558b061ceef22db289ff4fb
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rook-ceph@sha256:643fab8e7af9a142d443a0c8c711dc61d7515076bdb344967dbed83aad7db4dc
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rook-ceph@sha256:dbc8b437d11595169429d46ac424d17f20340a969ad741db44ed5f9ec93c9dc0
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rook-ceph@sha256:82292fb33a9c1a7d24e9a4017356a8e3fc9ae0429150792fd751eca2839a03c5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rook-ceph@sha256:f87623d24c517faf78f9236bae36ac87e405110d6c77a5373dba3a8b1b1446af
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rook-ceph@sha256:4f8d4f66476fb06b204d205d80efac656100c4b5abad8aef2e2c3b33563850b1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rook-ceph@sha256:b2881c1115e5b5d10fc86a9eb316962a64d5f7a99f2b84b8809ea7b97f1c014d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rook-ceph@sha256:4d4bf5cc776e1f04fe4348067afbee86050040bb5a75d4b7c0c1a7b27bbd96b4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rook-ceph@sha256:a787365ed94da2986314764730197e897a6eb0f8ec1b68ce238cc24d45238776
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rook-ceph@sha256:e3e95fbc9b27359f14d5f8480823d89f5e5678e16c071c674abd09584ac71e46
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rook-ceph@sha256:2f01c5aae896e72c8e4398fb31bc864d021990b3c937a08adfd1adef01d43164
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rook-ceph@sha256:5ae57f376842164f549d0e11c6e03c008e387aeefb9c0eb950ed92222d4003b5