Sign inSign up
Harbor Registry Control

dhi.io/harbor-registryctl

Harbor Registry Control 2.15.x

CIS
linux/amd64
debian 13
Tags:

2, 2-debian, 2-debian13, 2.15, 2.15-debian, 2.15-debian13, 2.15.2, 2.15.2-debian, 2.15.2-debian13

Index digest:

sha256:f0963d737b4d7c319fac4f2603261b3cc112cfd091709402dcdd782c36c1f6b9

Manifest digest:

sha256:4c0cb0363a76c019fa2fded6ad66fdde3882f3c825278c360094b00c4e3dbe49

Size

9.18 MB

Last pushed

12 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/harbor-registryctl:2

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/harbor-registryctl:2 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/harbor-registryctl@sha256:7e7fee60a48be46dc96db764d518e9a67c4af738fd7e98b13e7d2fedf684376a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/harbor-registryctl@sha256:c84b29257d896939837d3cba94a76d49d6fd1ad17cc2c8a0767013cde2bc7ffa
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/harbor-registryctl@sha256:fde680b649933bc07cd79004b00511a8fdfb69bfa7d1b14116b1a1866f3a0df7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/harbor-registryctl@sha256:e4d2bcbba4816d709ba9875537714b80eadf4bf343cf0f17ed51e7d89a1c4b0a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/harbor-registryctl@sha256:9a07578a7f648e4dd67920dccff98c18ed352c17aef67693c9797291c60b76cf
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/harbor-registryctl@sha256:43b8c759c032b5cefec460bea8e50bfddd9ea9f5000147da2c37dbbb27034f0e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/harbor-registryctl@sha256:0634b1b32110cfd6d3c6bdf7e1219603580503d05cfaeabebb2e289d8a8ca94a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/harbor-registryctl@sha256:6ae949c430566fcc36370df739f5448c16d58a2aac256a8cd33ab7ed8c4eb4f9
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/harbor-registryctl@sha256:61b57ab30d578f44f5da8e33176c7754d1438888eb04fa16ebc2c41d6f5b3bb6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/harbor-registryctl@sha256:3403750225fc2af5d9713608b7aada070f4a337d99d7c01522a2ebb27fbc0bae
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/harbor-registryctl@sha256:3142cd294b28d598035f232609c9a72bbf332a4a3c68794942deefacdc161e42
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/harbor-registryctl@sha256:f78391913947ff00beb2a29d37c740e29cba787383ea359de653029631b69d06
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/harbor-registryctl@sha256:334effc7d0cfaf314993f3428c70bf2d0afa36bceda7a199b9443ce1fee06f5c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/harbor-registryctl@sha256:1a38f959623c73280611e632ca501fe23696e87d6cd2d132bf4ab1d405f6bb68
SPDX SBOMhttps://spdx.dev/Documentdhi.io/harbor-registryctl@sha256:46cb371bf1d6ac7e3d02d69a231172b6ab462c41be72a28c647a8bbe54435341