dhi.io/calico-typha
3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.32-debian-fips-dev, 3.32-debian13-fips-dev, 3.32-fips-dev, 3.32.2-debian-fips-dev, 3.32.2-debian13-fips-dev, 3.32.2-fips-dev
sha256:6b15273b8e43fd0dceac2e0c1638105d234f12518f9a9f5e47a4769df18f799b
Manifest digest:sha256:3f9dd6e398978ac12eb1532ec93d0c8cf5fe1318926548894347900b3cff405e
Size
57.76 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/calico-typha:3-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/calico-typha:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/calico-typha@sha256:2a14b0a2f2f5ae5ab4b02a49571d72f3ae09ca98e602abf19e03f174aae9fa2c |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/calico-typha@sha256:0b206c597108a06b1f141b376d53084c907f6fae6eb8ab1f420472183a918e51 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/calico-typha@sha256:201a09df658234549f10d0a6c432bbaf914bd86bdc9844600ddad7bae8e64076 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/calico-typha@sha256:d5d6302492b77af1e75a1ffd6afea90b62986bfefc2898138f01a64af9bb35da |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/calico-typha@sha256:9224a5d9819ddc16b6929c3827948342a639102e7daae66c1887bf119d6679c3 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/calico-typha@sha256:0123deb5200d72c40fb0485029549d8b62a7688ed00ad5b6b4222f18ba93671b |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/calico-typha@sha256:51f747e75ae1439785001e38da6ff91284f0e187abd6167c88b4469dc6770ea4 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/calico-typha@sha256:079f2badb44f0b368c25b65c3a5b6e3f3997025709cb02846fb358d0297e9a18 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/calico-typha@sha256:1645c2233565dc5f3990efa03494e8882085c911daf8e15c6a4bbd3a49ef488b |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/calico-typha@sha256:fceeefc36cef24f73ac6b910c05a33a31827ca7c1617aff3c58550787ee74844 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/calico-typha@sha256:1dc4605533d38487814e7e57923069d52c12babc188a8e1c9323034fb92da77c |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/calico-typha@sha256:76bff635a0edd7650e9dcfda4bbce3906faa2fc75b5eb0159664ae250cece724 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/calico-typha@sha256:092c887d180a4351d336a760c870bc3b783bfc2b9a2a8e9e878447de77e22078 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/calico-typha@sha256:6768443f31bbe011c156d4a70be63f2b1e121743fb140b26ef9295e16a4e9f06 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/calico-typha@sha256:c9e11391a98032655b21d8d324f60b521e957b74e5167d30f13a87f5241fe663 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/calico-typha@sha256:c4ea8909a6c5ac1726cd98cb21c4a18fa16b7c2cfe31287ff1b5023b68d05346 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/calico-typha@sha256:8b2eb5d0302f1adefbba728fd99e94cbb43f8b44a0ba9c39781336904beaf62b |