dhi.io/awscli
1-debian-fips, 1-debian13-fips, 1-fips, 1.46-debian-fips, 1.46-debian13-fips, 1.46-fips, 1.46.1-debian-fips, 1.46.1-debian13-fips, 1.46.1-fips
sha256:3ce9793f9bbd5aa35d4286c7d1e5d1557062e266d844d7c5136842e20153574c
Manifest digest:sha256:069a09ccc7344e1ce1595cafe9cbe1de3af1e4262fc9b584f6d7c1877edd12b0
Size
45.33 MB
Last pushed
8 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/awscli:1-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/awscli:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/awscli@sha256:297cdf7e0f74682eda613b9804dab8469d108423a26cffaf0fb267f3dedd11fa |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/awscli@sha256:fda53b75f7a5e1981b6955d90b648b2b650781dd5dceecffa48d4ec119e85de0 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/awscli@sha256:cdec991e44cac2fc0c96dba661fdeee54261b5f583021e88483841e1693af82d |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/awscli@sha256:ec944cdd006bf28c81ceab8d7d223596b82bc6a360dd20744cb7f1436f8f788b |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/awscli@sha256:92ed93ab058827c69f9d821e794f9ba47beb46aa3d93158b82f1c9801a38ebaf |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/awscli@sha256:e00e91ab524c562eae7acfab6c9fb86e518c8005e479fc982de662fbf084254c |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/awscli@sha256:25a89afce46aa5afc3ad33636158fd5c8198cecbfe00eab0dbcd3240b687b657 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/awscli@sha256:cdcb2fefdc392e2ba4c74a005a31d53f8a15206b5ec2aef16c6f81a0f037d1fe |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/awscli@sha256:eb9e35493f06ab3c8d117ae08a213abf1648d442b07aee5a0d7a45eb9cdbdc53 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/awscli@sha256:9e2edeec38a52f48ce101040c16a3c12be6334f81f2b5a596901d61bf4a40fda |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/awscli@sha256:bc8dad663c0a17d6050afbc5dbf8a6ea13e0e238ce8ed713eb0b735518fb60f2 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/awscli@sha256:b3eb5cab8d5b93473bd8eb37ee45c778e795d25f478a51cbe9a7a705290bb86a |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/awscli@sha256:8e8c1d1259f5682f99f845ec06b6d1ceccecbcc97b07795e5839d22b8361a8ef |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/awscli@sha256:60f61445291fff5ddfa16d4c98745dc94f94a4bf535819f0dfc896553ae84daf |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/awscli@sha256:d78b82749a10dc05f9f382434d4ed1a950984ebfb45bfd84e27443c463bf5c82 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/awscli@sha256:601c40a13d021a92748e3d9bc4a8dbeb1e6bfc3527b23dcddb424deb0ef430ce |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/awscli@sha256:d2789a9975a6cd13bc25cfdab078537522be4897d1c6654f57df9fa3a6b81053 |