Sign inSign up
JupyterHub

dhi.io/jupyterhub

JupyterHub 5.5.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

5-debian-fips, 5-debian13-fips, 5-fips, 5.5-debian-fips, 5.5-debian13-fips, 5.5-fips, 5.5.2-debian-fips, 5.5.2-debian13-fips, 5.5.2-fips

Index digest:

sha256:3cc41ae6dae90ddd95d8c9ada61f44464c1344d2423bc85ba86a7c7584556c53

Manifest digest:

sha256:069f93129d9c47b929f5cda01211da0c2c54a0bed978b6934f1299bebe5d60e8

Size

73.38 MB

Last pushed

11 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jupyterhub:5-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jupyterhub:5-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jupyterhub@sha256:ad55871dc36b55d5f4c735baf298faa5caf4a46996450debb2c480c29fcf8e7d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jupyterhub@sha256:eb6c0b97069a449f4a6721cae7c57a6f245b070cc75f16e62418abc8d8deddde
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/jupyterhub@sha256:ecfc921c1bd6bcaff0e0f9440beb81b5fcd5452b12f5090f95a960ba34fc7738
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jupyterhub@sha256:91a0ff6d8b00dfd1dfb70d8ee4957831ca7df78b7758408ee2764358fd5db414
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/jupyterhub@sha256:7594f7aed1d9849339703f741e611b89ebae8f97eaa5a95e6a74d1bedbab39e9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jupyterhub@sha256:b8ee1ddd7e92be343a56ec10403df79ff664bee2390080ad6709b100ebb13802
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jupyterhub@sha256:844644406f4250d52aba1a73c942c2b9704f655092933810fe22420fbb70b9f6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jupyterhub@sha256:f54a1141ac3c8ceb7924cd1dd310f79b06d9995a9e66ade4c3f87569395052aa
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jupyterhub@sha256:d2616474d0afd0f842ace4decca6326208824424ac87c007d814c7f52f5accb5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jupyterhub@sha256:928939217486f45c677beb511591aa6208da1e80cfa74b685df7591e29796d31
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jupyterhub@sha256:270e1e468f3c814cce6bd309f6ff6be2d5a2ce45e9ccafea428b4fea9a852cf8
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jupyterhub@sha256:b135eccdeec2303151a59b0a41498cbfee5b09f7f038ee992dcf6e88ee5f6ca4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jupyterhub@sha256:f1b438b3e76212e0e72f1aae309cc2b032dda45c1edc2d2bf0822718e6935ed7
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jupyterhub@sha256:56dcf785d605f8a3f0a5c9761f9380276dbad80f13958de69b63e0e1fac89c46
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jupyterhub@sha256:58ea80b4a418c8b7e5bab693da0d76646a6858333752e93dfa122863d4d60537
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jupyterhub@sha256:78e76cebf519693804f710e86a3eeb27012aab98eeb294477bd2051c10c6c0c9
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jupyterhub@sha256:b2167616e441d214781943eca92d1380118cb90cda4585a32031ccac65be1d7e