dhi.io/calico-node
3-debian-dev, 3-debian13-dev, 3-dev, 3.32-debian-dev, 3.32-debian13-dev, 3.32-dev, 3.32.2-debian-dev, 3.32.2-debian13-dev, 3.32.2-dev
sha256:ebaf711cf4f294c197eeb33dc09b552479ca814c393713858b2ec2f1007b04eb
Manifest digest:sha256:899203d18a4ab162035eb5d8c4e48ec10f8389a67acfac9ece8f71a86d6b5e95
Size
94.78 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/calico-node:3-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/calico-node:3-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/calico-node@sha256:ae6c07c2c236f35557dfa6bca2d04db9e1d13c32444c799b745e99e1a7586077 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/calico-node@sha256:af0709adcf05dd134b33b2a9c1f00a120d2b96d2f1aa4e4c1935c4fbbafc48c1 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/calico-node@sha256:07773fba20bd2c43a5b6e5cc0238d097d259d6e5ba367e199c465fad46dd54df |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/calico-node@sha256:a20c896fb763d0b6cf6156c02009e156af206d8347d70f88bbd488597568cbe8 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/calico-node@sha256:a64e4dae2c9a740828b8518837464b195e492d6635b210f99d7b537aba49eeb6 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/calico-node@sha256:e710df368f9c237a381cc41deb81524b54e216b562b0ea3ebecb4cfa3703faf6 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/calico-node@sha256:1ef95303a63c8720770d89637759707d3896b75aace01e94346d9ed0709320be |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/calico-node@sha256:003d055f5fe98aa57aeca262636aa3cf8fc320a52cf31698d37c59e6f7fcea16 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/calico-node@sha256:b56302fd39f82ab24c4b6656e546e79d502fc689d7f48ae5e686ab038140c291 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/calico-node@sha256:0fc4396e36fbc586cf3a3e3b5aef323b0dfd7d82c0c3167abbc450958fdef31d |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/calico-node@sha256:1234e189c459dc409c69dd6d329b092d11bd7aa81ebd16330e18977c50e81459 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/calico-node@sha256:b27127bec3725e9e3e2a9597d2f676e9560e28d3ef0d71bd0f97f384d56459e8 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/calico-node@sha256:c4e000312846d4f28fe2b6d874a79b62716e19d58371b726b2217dd824b69a1a |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/calico-node@sha256:52f3eb67da0523ac02a55724613a6c1451b5d3b9692538563fcb9ae0a9fd7496 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/calico-node@sha256:54d5dc10a9ba699e9683b15ec3e063915358b2054fd4f53121add095fcdcbc03 |