Sign inSign up
Temporal Server

dhi.io/temporalio-server

Temporal Server 1.31.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.31-debian-fips-dev, 1.31-debian13-fips-dev, 1.31-fips-dev, 1.31.3-debian-fips-dev, 1.31.3-debian13-fips-dev, 1.31.3-fips-dev

Index digest:

sha256:8842931d65c9db015f9333a486771bcf04c6f589b79bc585ba0acedf745846c2

Manifest digest:

sha256:aea2a0be25ae883c8438fc9296d30890db075f8f424c0a980a502a13bb674d80

Size

93.62 MB

Last pushed

10 hours ago

Vulnerabilities

0
1
0
6
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/temporalio-server:1.31-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/temporalio-server:1.31-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/temporalio-server@sha256:cb133db494ff367c2a013637879be6586ada612d73a9c818254aff902c6aad11
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/temporalio-server@sha256:2708d643a4066c9829133d23819fd3960daff509d8ce2c7427e24050b40de334
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/temporalio-server@sha256:c2fe26a079b8c97a9b76f6e783c86bffac089c326880c62943f92af3dfe9e253
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/temporalio-server@sha256:5ef2a77a975b11197413f01cbcfb2057a01329836c06b0b88aae2d5ecd36d765
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/temporalio-server@sha256:fbd914dab5edc3b5ad8aa0b0eafc613a6abbd6434457ccb8f23dd3c510814f16
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/temporalio-server@sha256:823846da5a0a784865456ec55ea78200a0c5e44efcca608023a07d563faa0a4c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/temporalio-server@sha256:6cc0c541d63ab2dd7902f28944925c092866a4df9c0b2c0fe7f8701edb9bd996
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/temporalio-server@sha256:6996e30d327e34c0ca0da503743aa81bbf882b953dc6b0dbadc1903e3859f5db
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/temporalio-server@sha256:9ec9d5558e4d2e8b73b899bcc9c189001bc975e09667d1681218bd79dd01028a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/temporalio-server@sha256:de13918cd12d0b11aeaf6083dfe08c00d34c5f992de89e4713efb6c6e414c500
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/temporalio-server@sha256:86601736cb1b597487249c4473c87f9c7d77aabf0aff5d638b73fe1b250ce18e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/temporalio-server@sha256:e9e090eec8cb95df6476405ad3dcb2cd8d1f5eb79db9f350db7a3c667298d626
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/temporalio-server@sha256:70b9d93027c49ab3a40c8022850917b4baec53530b9643bd4b06345185d180e9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/temporalio-server@sha256:877d65908c4747e8efe901624297e2921f90b3880105762ff3bec28b362b5a63
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/temporalio-server@sha256:87ac50840c30a62e1c4ecda5bee0c8c5ce3355902f969ccb5f6bdbd50484bf9e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/temporalio-server@sha256:b03ed053b960b4568f40a2d8d68adf8e4c89dadb9544ce017eca11f8e818870a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/temporalio-server@sha256:ccbcdc49246bb8fb8835fcbdbb73f5c8264ff56b51a5817ecbf90f5426662431