Sign inSign up
CoreDNS

dhi.io/coredns

CoreDNS 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.14-debian-fips-dev, 1.14-debian13-fips-dev, 1.14-fips-dev, 1.14.7-debian-fips-dev, 1.14.7-debian13-fips-dev, 1.14.7-fips-dev

Index digest:

sha256:119765bc266ba2c77036afa5dda3f2eec96d439ac882d01dae237ea706ecbdf0

Manifest digest:

sha256:bbfa895f3a0c4da89e0ce1e7b568e5678fc25eae02275d8f44093294550f2718

Size

62.63 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/coredns:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/coredns:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/coredns@sha256:3bf39e3552c119a936ff097128d223f476118e2e255aaa2d57d24b6e8cc935df
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/coredns@sha256:6d957a8a69865563cbc32fd686250092cf9f56779659b6e2becefbd856b8f4fa
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/coredns@sha256:cf3d5e7b57b023bae5cc58b561968c4d13082f93def8af92a1a587f2ebe8e831
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/coredns@sha256:71f525491b6e8546bb9a03c93bcdb0484e9ecf7b5511df2a642218ac929b93a0
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/coredns@sha256:506c6dbccd36ae3c3691328b66b24506637f5c6a4fe723d62a9d28ec1b3a9375
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/coredns@sha256:c521334acb712be06e755ad38b49096515fcf90390e4fbbc1f8a076bf438a18e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/coredns@sha256:55fa11dd7d50a8ef00830fcf6fc1a03884121752d418e58a5d84a5c2f73e61b2
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/coredns@sha256:5554c354d34546ebcf6efec98352bedacd2bb69c9d2c61a054442acd503ee090
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/coredns@sha256:bffe6ddbfe42554afa0b085e5bc7b9be199dce69339ded1a0ce9f2ea776cea2a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/coredns@sha256:a611be2265c0ddf694f9ab6da6e1f1968396f42eb2df3aaebb03455e5aa89c1c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/coredns@sha256:612e1085ad4c458783ce3f339683046efc575769fbd65436a16745ebca2eaf48
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/coredns@sha256:2a421b83bfd52f0b90f34d4d09247cb0723c7a6552068eb8a581f430b0e4bd65
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/coredns@sha256:67b4605e4cc311f66bb5b91c52f70eb41f3ac0e02282fb005c8f923d5242459c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/coredns@sha256:d437411191ddfe8db42d04310760bd21923d777eea8b82b589ec4c58299d364b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/coredns@sha256:d72efe83ef6e2454421bb1aee5e5d384d6ca66334e44fec811c5941ae6475698
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/coredns@sha256:9e461ae519c8bccc2cfde678c2d274886268466daf9851ea89f3f13e0c035953
SPDX SBOMhttps://spdx.dev/Documentdhi.io/coredns@sha256:564bf072829460f6eb88f7934ee2a64aa6761552eea0aa7052b7a12b779acca0