Sign inSign up
Ruby

dhi.io/ruby

Ruby 3.4.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips, 3-debian13-fips, 3-fips, 3.4-debian-fips, 3.4-debian13-fips, 3.4-fips, 3.4.10-debian-fips, 3.4.10-debian13-fips, 3.4.10-fips

Index digest:

sha256:eb0f2d2d29760fc53a9579b7404d41f6780dadcb895810bf0bd8dbb11861c40b

Manifest digest:

sha256:5c6aaab643f0d65e16dab1aa4b19591ca5a16c83a5055d098f8de9392ffd9515

Size

21.07 MB

Last pushed

15 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Mar 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ruby:3-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ruby:3-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ruby@sha256:2967df96092144ecb5b6365410bc06ddebc09ad3c0c0b855ea8dc106ea4d38f1
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ruby@sha256:99e2f9bdac54d34cd78ecda283b0be30eee6f46dd5bfa015c7d75559e0d9831f
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/ruby@sha256:1245280f77cbd05a7686e47c43052d208520a997a5cc3f5194faa23acade677f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ruby@sha256:2202c292ca61c325e4ffc4ac46213208a5b17952c140f7401d6a22abadc7d745
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/ruby@sha256:5b18ccee0fdef4e60fd7bd8e6ff3c84656621763205555a1b7086462c02bfcfd
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ruby@sha256:e005f3a05ec4cf642a3c49b8ed939e236d1c7c3ab97df03449f37f53d5ad2f40
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ruby@sha256:40effd09195ead96b0f94670a4fb106bb2e304f1e6198e21c357b9cfa863f302
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ruby@sha256:bd7971671ff4b7ae0625ca79ba3c9732d71ebccd8ddd6631e76155d74eafed81
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ruby@sha256:56d34000f2d101451b5b9202e5dcee558d514e1f4bf88b2f5258ff0f447a8f3e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ruby@sha256:950899fdae0b3603ee0825e7be951a1327d4719d956f7e010c374c07f34edcb5
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ruby@sha256:b85562a7ed717020bb61476ddc7cfb534f8e99bd86edfa166cfefc1c649b2468
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ruby@sha256:7e913e08e2b2443e40c10d975c7e6c44c70002cf7395c1f8ee7e7d884d02b674
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ruby@sha256:a0f1c7efd267c8ae34642b4ceca6d37c247efc8a04f098fb4f1ff32b9a40cf3e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ruby@sha256:020e0678a90cfbfd9633a429256bca39b01088f418b312195f0ae23f90c7e777
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ruby@sha256:bffd9f0f52e1815d854ca72fb2f6766d1938df77df03f8e0ca9da0427a355f60
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ruby@sha256:01bc8ff24a046e4ab33be11294ad33dc344c257b9417ad7706dfd105da2fa44f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ruby@sha256:672bdd53d604e374a7eb9f7665f58804debb0cb0effb01b05b59c6aa793ea35b