Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 10.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

10-alpine3.23-fips, 10.0-alpine3.23-fips, 10.0.10-alpine3.23-fips

Index digest:

sha256:b260dd697d3f95b800f9e2b60c45dd8dcdf211558fa294053c27931f81f0567e

Manifest digest:

sha256:22d7b7cbbcb7920462171c360efb2f52be61e1a5fba6da40d67489f8d2013c38

Size

54.57 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:10-alpine3.23-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:10-alpine3.23-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:d6a612d19612d7608fa3f4a0556130747479f3567062240c00e5dfa299e45b49
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:81f618e456ef6f425894e63e0888e4d50178a92c7a12335790750824d31c8648
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:fff12f851fd0a1f03c9338b1162c5c819f95fd70e15ddab1445aaa2e2782abfd
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:c75770343389b43f2ceb8e9b8423d96156a8cde3e2c00fd32e080f1ce5790c74
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:bbfdbc7d6fb09d97643e969f736748e611e0082c6e634e92acf2cfa82861fb5f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:007f8058e049084c01a1c8b0325b8c7870d909629abf3cdbed8a939fc245e056
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:3ca86062da01edb2d1e0c813f6d6a054303ce0f29364b15ecc11962b26100a12
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:e478623d11afbbbc2a20568299290ca19c51fa0f32e6bd6fa24ca02031343a1e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:3652a31e370c15c102d2ff08796c4663b05469cfddf25ab7383a26f113f0757f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:e2d1e58defa5a79571cca4ea1f67d2548f5923eadabb1a76568a5728e83c42fc
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:4372c6b27d56d7f8233c4bd38a20c7a53a988ee6bc484ade3167ac6a65c6330e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:01378eb01d5e43fba260c0d5fb4a24963a3c55106379ba37f42cee492cface09
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:97ec384c3845b90f0316c311ea60273d51127ece5bbe027eeec454a719485d86
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:20c1b826d55fb33d5c6b14264b8b52626a7db8f66086501c0fc8c4528143d195
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:f97169cc72c0aaff12dd4a32f1dd462013dbae71404c3f6e8895846fdb3d0059
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:5466451fb8fc89762ad9ef70849d2ddbbaae70118b4f1c42c20581cbd3f13d0c