Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 10.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

10-alpine-fips, 10-alpine3.24-fips, 10.0-alpine-fips, 10.0-alpine3.24-fips, 10.0.12-alpine-fips, 10.0.12-alpine3.24-fips

Index digest:

sha256:6e5f9b35c3e858a74e00c73b2ae334751807d20436019679625a62c8bfd6585d

Manifest digest:

sha256:7db64880d2bb5642e472f4608f24e406890d2607e0e58017cbbbfa331ee59d96

Size

54.97 MB

Last pushed

20 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:10-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:10-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:e22a350c2d00dda57a994ae06dee5231d81b4bb808f6cd3dd347d5dcbde6a6a8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:ca92a5750048f87eb4751aadac2ed1e471644a9d4ac975cbd420986672ad5aca
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:9138cad6c123a66a6239bf5c840c7b6e66aa391a0942a6af6de4b5361967a837
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:2e29fec8f78b823dbd421997168036afb89a0214735081ae99398fcfc14a3ed0
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:7ae5d241430645400dd8850050410a4a1c9bbe948d07c19f974454f9a2db8c32
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:f47c96cdb29bd721cf2a4f01a1f657fe95be43d5728ba1c91ad0141496aae120
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:2d351c109ee46956787931d9682baa54fe6e4f171b2a571e77603ea973ce6be3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:8973f139e03e9422a0743f7d661e54dcf45bce0ebf9d1a4c1628abcc464fa59b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:3c16fe9dd651b95c21492a2cf7e3e978f657901c5ce70fac99899da3dc338b5e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:4815b33833c37874e7f0d1a3476fa52d9fd0a8648b60a2399a4ce2c67bc8106c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:03958cc34a44fb6be92cff79a889b569ce12c996300fe94c80908b33be99403c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:9dfa9cb11293ccdd37c4734ae5b990d0bd8f7be44c966cfb3c9416f364021e59
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:4f5db3fb8194aeedee40af85c5db728ad83faa40a3c683ffc027525926c7255f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:373fd847b170de751e32deb403a4a6f6e46b4ee6c438f02b3fcda769d766ec4f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:56e0d4208094eb55eff50b12b6d354c80c6b7859cd89230d998ce8a7536c9c70
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:8da3a2741e98c074bf724ce3222783911f1c0b0ee4e0c6333d7af609088cfb1f