dhi.io/calico-typha
3-debian-fips, 3-debian13-fips, 3-fips, 3.32-debian-fips, 3.32-debian13-fips, 3.32-fips, 3.32.2-debian-fips, 3.32.2-debian13-fips, 3.32.2-fips, v3.32.2-fips
sha256:a0bea2c69af66b3f042b7fc1e6bfb65d3a077d5885f79de9364d442660baaacc
Manifest digest:sha256:8d55d9697e82632fdb4adde32688f9f54f0841d3b637565bbfa7f21e4b417710
Size
25.79 MB
Last pushed
2 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/calico-typha:3-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/calico-typha:3-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/calico-typha@sha256:069cffdf4fc6afe6a63968d5d66f773a9e5c003ee438c94d42f6841fe0fd39a5 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/calico-typha@sha256:264ad97883c34c42d038e657c513cb7311eb44fddbee1b52b0b7ae04043bfa43 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/calico-typha@sha256:3e293b2570a96b3177b50b8ef5447b52932f100d1318a3224e0f4a6eceaf1bc8 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/calico-typha@sha256:fcd27df2eafa8b6ffb498f19e21d35abb498b490181c810a36800b31a099d460 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/calico-typha@sha256:302c537d0cda426c4709b2608c49c80cd16faeca9656db1103dabb0da417cd46 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/calico-typha@sha256:4ee0cfdb96af1d3f27e7e03429fd580cc05eeccd34c1322a5d827190a209dc32 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/calico-typha@sha256:9a69a60cb7d1bd32dde6aed9a2e259e8e8afe7444f9918097f6cc4ce0f6f3a26 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/calico-typha@sha256:95b19f4e00098a27d8e78b7d37a165cfc054161d680a461ab29765e8ba5c310c |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/calico-typha@sha256:e10b17eff84e6bd09d125a0bc86933da673941660e85ccab9a807b167884b683 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/calico-typha@sha256:e2269f9b5ab31673d8b0b5f2064bf5a475094bd8e2580aa4d61568cf49e6a4ce |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/calico-typha@sha256:a47c7cdb32ced7b46a7b68a3c408da6a92f1c3dea020d633528063bd305698b2 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/calico-typha@sha256:7eb4ad345d4fe2c606ceb0bba18a29b11939e0af5d3d0569efbcf11c86d52f87 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/calico-typha@sha256:1a9cfe48e3090b92dda491d4396a053b1df2ab2403034cedac862c5af0715bf3 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/calico-typha@sha256:a276c0c1331736faad96d2afe8dd58ab9a05a792e1c2f522609aa4bfa586792d |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/calico-typha@sha256:8740c3edf7a07a71255836454346b602a484b52c422ab440a269998bb2b5733d |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/calico-typha@sha256:905e26efa2a0d327835b1117b1a43d42a7b888aa82f7d022712ec59e06cff2d6 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/calico-typha@sha256:dec0d0f03dea44f829ffe6852d16be2a3a6eb54c1bc8d8a140e40b1f73d77ff0 |