Sign inSign up
AWS CLI

dhi.io/awscli

AWS CLI 1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.46-debian-fips, 1.46-debian13-fips, 1.46-fips, 1.46.1-debian-fips, 1.46.1-debian13-fips, 1.46.1-fips

Index digest:

sha256:3ce9793f9bbd5aa35d4286c7d1e5d1557062e266d844d7c5136842e20153574c

Manifest digest:

sha256:069a09ccc7344e1ce1595cafe9cbe1de3af1e4262fc9b584f6d7c1877edd12b0

Size

45.33 MB

Last pushed

8 hours ago

Vulnerabilities

1
1
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/awscli:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/awscli:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/awscli@sha256:297cdf7e0f74682eda613b9804dab8469d108423a26cffaf0fb267f3dedd11fa
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/awscli@sha256:fda53b75f7a5e1981b6955d90b648b2b650781dd5dceecffa48d4ec119e85de0
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/awscli@sha256:cdec991e44cac2fc0c96dba661fdeee54261b5f583021e88483841e1693af82d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/awscli@sha256:ec944cdd006bf28c81ceab8d7d223596b82bc6a360dd20744cb7f1436f8f788b
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/awscli@sha256:92ed93ab058827c69f9d821e794f9ba47beb46aa3d93158b82f1c9801a38ebaf
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/awscli@sha256:e00e91ab524c562eae7acfab6c9fb86e518c8005e479fc982de662fbf084254c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/awscli@sha256:25a89afce46aa5afc3ad33636158fd5c8198cecbfe00eab0dbcd3240b687b657
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/awscli@sha256:cdcb2fefdc392e2ba4c74a005a31d53f8a15206b5ec2aef16c6f81a0f037d1fe
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/awscli@sha256:eb9e35493f06ab3c8d117ae08a213abf1648d442b07aee5a0d7a45eb9cdbdc53
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/awscli@sha256:9e2edeec38a52f48ce101040c16a3c12be6334f81f2b5a596901d61bf4a40fda
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/awscli@sha256:bc8dad663c0a17d6050afbc5dbf8a6ea13e0e238ce8ed713eb0b735518fb60f2
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/awscli@sha256:b3eb5cab8d5b93473bd8eb37ee45c778e795d25f478a51cbe9a7a705290bb86a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/awscli@sha256:8e8c1d1259f5682f99f845ec06b6d1ceccecbcc97b07795e5839d22b8361a8ef
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/awscli@sha256:60f61445291fff5ddfa16d4c98745dc94f94a4bf535819f0dfc896553ae84daf
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/awscli@sha256:d78b82749a10dc05f9f382434d4ed1a950984ebfb45bfd84e27443c463bf5c82
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/awscli@sha256:601c40a13d021a92748e3d9bc4a8dbeb1e6bfc3527b23dcddb424deb0ef430ce
SPDX SBOMhttps://spdx.dev/Documentdhi.io/awscli@sha256:d2789a9975a6cd13bc25cfdab078537522be4897d1c6654f57df9fa3a6b81053