Sign inSign up
Temporal Server

dhi.io/temporalio-server

Temporal Server 1.31.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.31-debian-fips, 1.31-debian13-fips, 1.31-fips, 1.31.3-debian-fips, 1.31.3-debian13-fips, 1.31.3-fips

Index digest:

sha256:764c62996a150eb78f0c8aa69c7b6882aaed96d04526712996ff73180eaeda59

Manifest digest:

sha256:101fdad5e0bedcff268cfccd0c4eac4b652dba1efaeeb7c7fb812b6a7a77c9ce

Size

48.04 MB

Last pushed

12 hours ago

Vulnerabilities

0
2
0
9
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/temporalio-server:1.31-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/temporalio-server:1.31-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/temporalio-server@sha256:6d8227555c5a13d71d689ae85f64c9f0a60aea7ce249cd4d958c46e8f05972f7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/temporalio-server@sha256:99ea8b31fe2bf27b5073b63668acffe34d7ffd00ff7ec2a3c0242cefce124781
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/temporalio-server@sha256:261bea723f35932f44e59c7a978fd9a97021cbad29cdf5c32f4d103a6ea662d0
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/temporalio-server@sha256:2bdd057662dc321bd3b9406f33102670a0e3bf5a891e4cc526673f4a59461c9b
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/temporalio-server@sha256:daa18afbd139f5b1e0e3573bb30f9d859af7cd9a1f3c0171d98acd19f03b9fb0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/temporalio-server@sha256:030d2e09c2bf1f005273db05f8cb10f4dab311c670bd627361d1ea556641b2af
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/temporalio-server@sha256:af142f3ca2d2059500ffb2277a00d32d0b110f850701dd8570517149a7a40cd5
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/temporalio-server@sha256:50e324b27068966066d4b378020661005b91bd9fb909cc09f89156fef37ad7b8
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/temporalio-server@sha256:cea0f3a48e64872d49b1691dc669b44f9aa9996b1d2219d231cf1c0391263387
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/temporalio-server@sha256:ecbb740086c6a3562e0bfed0aa014a8f85fd5c893560c96a652970fc8f7458b8
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/temporalio-server@sha256:303480e8d3293617a7ec2c5a5077ea739eab99c00f70f6d85ad2173e80233414
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/temporalio-server@sha256:c7db84d52aa5cd1cb3dd2234702d518165a8890675d36f3d1f8b856a19d96f31
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/temporalio-server@sha256:77ed3062c61b4b8cd39299cf09db743b0c77a74085e2008ed055c51ef88c4ae3
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/temporalio-server@sha256:46d68fec88edcce20829b4c79f38762199574caa47fdca726411cd40e1d18b07
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/temporalio-server@sha256:4dae874888ddcd4a4455355462acc244a1f438ffc43990525d087fbff3c8d22e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/temporalio-server@sha256:743fd922e684f9fe9fcda241e8a19d5d0639f5dcc522f114fe160e497d15326f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/temporalio-server@sha256:07ee35727149db6af8ba320d9b5378cf5b8e2e5a59bb57a4251667b5a7e9bce7