dhi.io/calico-typha
3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.32-debian-fips-dev, 3.32-debian13-fips-dev, 3.32-fips-dev, 3.32.2-debian-fips-dev, 3.32.2-debian13-fips-dev, 3.32.2-fips-dev
sha256:21babb5e17db4c806d5fe7b0f270c75928ce2f498f66fd9f4ab083cc4f05f66e
Manifest digest:sha256:6ddc8eb2eec3afdf948d45d60c8df5e5119d292fa256aebc99b86d969427475b
Size
57.76 MB
Last pushed
7 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/calico-typha:3-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/calico-typha:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/calico-typha@sha256:df2831c4c57e4fe145ab03e5905b181e2f44739e643b77591981680a060f204f |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/calico-typha@sha256:d790ae53d14839352091bbd737a4a3a77174ef81611be2173315510d07103f34 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/calico-typha@sha256:67e8e3f1f8d334667cab623387f33084f0a887458086332042937fbbab43072b |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/calico-typha@sha256:5ddcbd9d74a0315bbb6cfb465330d8bad7ec773e4746da3d60f9f9f6e062b325 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/calico-typha@sha256:2c9452d3a45241731a7ec563f09cdee2616721996f7124bf1e27a63d321a8a85 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/calico-typha@sha256:e4ec09ba5f06ebd6f4f69ded2ca02f7fb5c038b09493d4bf110bc041a94a64d8 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/calico-typha@sha256:7e9ddacd0ad2c5b778e8abb6d113f48ea53629d248f304307c264615b6a35507 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/calico-typha@sha256:9717ac924f4c89c9af3781ba589d33ab3faa5f8fc82bb446897a00c6aae8ee5b |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/calico-typha@sha256:2846a03eb109cdc7655d9f946c54ae17a5c521a39b207592942a45fb2f0c5a9a |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/calico-typha@sha256:a2bff08a7764b698b8595b34508cf79fdfc66072695cd892508396295c8cac19 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/calico-typha@sha256:c9b7ca041982d46425cf08f8823296f9b671b7edd8d4af818e130c63eff86409 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/calico-typha@sha256:fcf2f913e3f210f3c7e7f0e62a6beb3797f3ac09a3d5c3da820da23dfd808a99 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/calico-typha@sha256:dc4c3fc978faa002ef44c48c8ce626174a2a1720080a31e5bed9e1c61730716a |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/calico-typha@sha256:60dc38db086ef687dc8ab9118ebc1ce7a1f2b0dd482156729d110f201a5c9478 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/calico-typha@sha256:333566a2118559d849eb8d74f505c7d8934fcdd7cf2867bf0c5f046db16c51e3 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/calico-typha@sha256:e12f6915c9a5f47f1fb840da5ccd1d3b7ad0150a45e63e8e3041c992c144b865 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/calico-typha@sha256:33492b3e494f4373c631316dbc8a12e1c68fc0117972aefd3ef81a7df2162761 |