Sign inSign up
Rundeck

dhi.io/rundeck

Rundeck 6.x

CIS
linux/amd64
debian 13
Tags:

6, 6-debian, 6-debian13, 6.2, 6.2-debian, 6.2-debian13, 6.2.1, 6.2.1-debian, 6.2.1-debian13

Index digest:

sha256:008e5c62deb94cea77a35d0c290a266e346b8c3329a4c5a134e8acd1d3019cae

Manifest digest:

sha256:5e83e0d9a95970a5cff99dea62835f1c46cdaf73628ebd52599e39bcfef9faa2

Size

279.37 MB

Last pushed

11 hours ago

Vulnerabilities

4
8
0
11
2

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rundeck:6

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rundeck:6 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rundeck@sha256:f80cc7c0ada1dae22523933288ea7ee378923f0390eab49cf81973500bc10869
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rundeck@sha256:9afd11d4f184ffed3e7597bb867970664a19e33cb1dfbe0380a70351ee995cef
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rundeck@sha256:edde5729adf177c689ba9410dcbbc003e6b965d925add6b06386107f6f8338bd
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rundeck@sha256:494707a5d232d19519e1db49bd3d991a75ce9568d1d8e2e682d9f38af7536f6f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rundeck@sha256:0b0cb9c7b99aa60ca93112f9fc4d19720e77271dab9b6239382388281ee269e1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rundeck@sha256:715ed1e14d1d5e1e31dea4b6edee4e18be4cf91064b258be464a474a447069c3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rundeck@sha256:ec0007828fb25b39288b7b2cc49505048a6dab83ea263b8e1b9d0cc9589ff51d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rundeck@sha256:3caad256bdc69b8ae4410d0693d41e75765e0b1119fd7c160122d17c63b2f222
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rundeck@sha256:ba468397b51658c5a46203910ca37709f7817d22988e131ddc90d883201896d4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rundeck@sha256:9eafcbc716626cc79194a64ef330ca0355cb3985e948279e9d69f760969e9121
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rundeck@sha256:b0be9e83e68b896acedabd468d37a5fbdddf2a32fbcd7a6224f809c8fdbb73c8
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rundeck@sha256:e4286933990289e686b6966a19f3d7a2a49cbcb3d9dd18686ecc54c038addeb4
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rundeck@sha256:bb301ea4e2e1c85a7c2c49695e5b5a9fddb1e3845b03decff68f51df535b0b50
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rundeck@sha256:6ec1e29377b5353c82eaa9e713832ed7c211fb7c6d84ae65a1d1bc48674c03a9
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rundeck@sha256:d22536c335c63f041f9fc3bdaff681360e31a1e6ca2564a845fb2a8e95192c04