Sign inSign up
CoreDNS

dhi.io/coredns

CoreDNS 1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.14-debian-fips, 1.14-debian13-fips, 1.14-fips, 1.14.7-debian-fips, 1.14.7-debian13-fips, 1.14.7-fips

Index digest:

sha256:8f4b132ee003c1736c68032e6d292db740b102020610cc2b52382a90bf5b7c47

Manifest digest:

sha256:87b24f885f2f88de3c6857272edba1cd801d95c5bcb24bc769bb7719be76b2b1

Size

28.19 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/coredns:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/coredns:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/coredns@sha256:5302cb26e180740d9d23e6bd49ad457ad666a470626bb7327e462d0578bee7da
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/coredns@sha256:8f10ae22ae9e2ef135fbcf4e56042a89a45ba0ce3def2ea765d39ae451b3b677
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/coredns@sha256:499e24949048169a89f21359c40d86755279d250f042db8bead741ece2febda0
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/coredns@sha256:c4cfe78af52d12cc302f639976d76e1e036f39b540fe7938eaf7aafc5d264e7a
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/coredns@sha256:ee484ccf2e118c9e3cd58d8f78cbc2e84059d1a41f063dcfa333e34c66c5ef50
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/coredns@sha256:5a2781a4330d07bbdbe04684f0dffbfcebb325179e64caface00f95ef48a5dd5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/coredns@sha256:71b306d6bcc251e22a7c5cd7c82942b4e643c790867b2f4bca3696a285756f82
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/coredns@sha256:de2fa6ae21d3afd850a42c6fb9af3b584d934db3a855482893fc133cadf55898
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/coredns@sha256:8a54e315a351eb8769511115b0d48b9ff439eac1ba6f50287d37a32c02d9bfc3
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/coredns@sha256:ea2ed83e35dce794f628d9e1517eafbf2804b874f17ff6e7f949561b55bde8c6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/coredns@sha256:032b3bf28b86d172d8f30fe4296911f2d6f24482b3f284ccb59b3c8259eb57d4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/coredns@sha256:10a8d4437459f119a992a79919c11fd9800635ffdb762614d5d37c4a884069c3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/coredns@sha256:c582fa3af55ef32f368dc84cb8b6d40c2ba438a31f32947e812f272c14ced34b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/coredns@sha256:60c06bcc143e7e02fcdf6e9a416fbb6fb01b7a71fdef2cab981d600c845a2176
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/coredns@sha256:b61016e7b26fc88f983743a4911755e478a43ee484b0172b03667b12f3a5795c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/coredns@sha256:a6fcb2b0e2fb5c4ed8ee0d1a1c81d5339b809bbb6a508224160aecfb2306da9c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/coredns@sha256:c51073b92ae52441691661ee68e85dea77bed8bf50bcf24f46786b34eb907483