Sign inSign up
amazon-k8s-cni

dhi.io/amazon-k8s-cni

amazon-vpc-cni-k8s 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.23-debian-fips-dev, 1.23-debian13-fips-dev, 1.23-fips-dev, 1.23.1-debian-fips-dev, 1.23.1-debian13-fips-dev, 1.23.1-fips-dev

Index digest:

sha256:9ae877e1aed375c2010b48b01f8453dafdbe2195f7eb27fe168998e81c8b3c7c

Manifest digest:

sha256:57abc266a4a5390c0c34b11293ced622567d6d99a395a296f00248f177333540

Size

90.81 MB

Last pushed

6 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/amazon-k8s-cni:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/amazon-k8s-cni:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/amazon-k8s-cni@sha256:ae50c777a92c33cba76a3a70efbda14b83c715be19d769f527184f7fbe5b7391
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/amazon-k8s-cni@sha256:c9940366d2d029ff264397f1250e52ea431d105dd63b8ea5028c44aa7f31a411
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/amazon-k8s-cni@sha256:f064c6ad49cab91266f20c7c8d448c371f7b8e2682eff253b25b666a252b354b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/amazon-k8s-cni@sha256:480cbb1b80d1338470e41362c5d2f2edbb13ee20dabc0b9261d6353b19c875b1
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/amazon-k8s-cni@sha256:9e347fefe90cb2f6881d557a824bc0872ad33f1be37b7696fe89dbc02ca5f846
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/amazon-k8s-cni@sha256:5c1412e5193811ff196b60231af395003537c238a3385d0021a92b6e489bed7b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/amazon-k8s-cni@sha256:dd5f05a8cb9f7728262b903952a9a7b013613fa84c728de14917d53f511fdc0f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/amazon-k8s-cni@sha256:e03a977cdac2e3cfaac7550d9f3e5e461c6b4425ceef61cb722101ded9af7d3c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/amazon-k8s-cni@sha256:e287936711ffa55a393e2bb19b93c8e4e034e50a632b1dd60df87bbe44151c89
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/amazon-k8s-cni@sha256:402b0943fe54778b984d13d493ac71b1cb598fb892b8564667aa822dc9c2de3d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/amazon-k8s-cni@sha256:76766b0886f692a995f8934a1beba4b12175d9a431eaa54c0a009c18eb925e85
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/amazon-k8s-cni@sha256:277319472439d37192f8031d9ed71108bfb825f5cc8e002e2b582f17ab9111ec
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/amazon-k8s-cni@sha256:490fd9d6eedd7053d42ce2c6b29f3734bc52439960f3dfc4168940b2a0586777
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/amazon-k8s-cni@sha256:bfc8c1b7f51d317df9b0c9f3b40bb22d35eb22d3b971070a0efc012e3bf0b67b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/amazon-k8s-cni@sha256:7c958644591713549cd2976428355aca0cc9b0d87a46fd34564fa041b555e9ca
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/amazon-k8s-cni@sha256:ffbcdbaed6d73d5a35e571a424e8dc15726fbb9714fe0b6bbdf2913a5a25aa26
SPDX SBOMhttps://spdx.dev/Documentdhi.io/amazon-k8s-cni@sha256:b3e21f1a4e5d84aa82b2780e05c6d2e637744f3d94967e7d364630105704bd7e