Sign inSign up
Kapacitor

dhi.io/kapacitor

Kapacitor 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.8-debian-fips-dev, 1.8-debian13-fips-dev, 1.8-fips-dev, 1.8.6-debian-fips-dev, 1.8.6-debian13-fips-dev, 1.8.6-fips-dev

Index digest:

sha256:156671e166bf0d24caa33b435c1d46142c5dfcc3a69903bbab0103e640ef449f

Manifest digest:

sha256:6f246d56a6f1943b6fd74b0ef6277c04f908cba6ef86e162f395b6afe53bf1f4

Size

104.69 MB

Last pushed

3 hours ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kapacitor:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kapacitor:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kapacitor@sha256:68b15e272c2fe5701a8d4e6dd118b395d070814ac0d86fe5c81f95035bd30b7c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kapacitor@sha256:25d991f7050a880f3ed84fd37729b2d452b43b63c9abf2a06457e7c5cca5dd71
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kapacitor@sha256:78d6fd2f34fa76609480b1ba56ba268207b52035bf46634b47870dd85a1472ef
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kapacitor@sha256:73a220ec0a8709907bc2a2aed245fa64c2eb71934753b6ea6b316c89d0cc79ed
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kapacitor@sha256:fecd5fa098a40800464580aa3aa0ee8e8db16ece879b82ad4ae00ee9273ab546
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kapacitor@sha256:bada58141d1e1651f2f4bc6d59947db4c4639461dd1c18861cf943c64c12411c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kapacitor@sha256:a41838a469f163e14f8581bccd7c6c15b9fd0e86c9c3ef173c6b7d197298cc7d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kapacitor@sha256:141f70d526957291e136509756a3584240921390df62cde3612c126c715322d2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kapacitor@sha256:f6e9f9fdde5dcf06e1b2c978c50e1c9f3027811871439ca7f5f6e9e91b8bb49b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kapacitor@sha256:6049a6d9fc8b0b61e689458e26122befba8d6e1e36c3002d67185baebb3f80e1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kapacitor@sha256:c980f20e9ccacd3b6164f9b387d6986f16ab23b515c19afc7ac9f2ae801ede83
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kapacitor@sha256:8542059d038146a0fc6da6de82ed90b61ae24adf91ecec39eb96150985027d64
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kapacitor@sha256:b6abc302d48cb1971a16062b18af746faef0950dc181e460695a532f2ebdd996
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kapacitor@sha256:7506321384b3ddd867db6c5bcfe2dc32dcd82b900a1a7fff1774050144531780
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kapacitor@sha256:8dd4a0feab44275d22973b2c4f1d8832c3280a5c5af672bc1ac89613a78816df
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kapacitor@sha256:19ade9c22b89bdc27047f786cbbb5161d78020260f5fac687193d451030f97ac
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kapacitor@sha256:75edb4c76e4fe6fa8785381c3f2cdc0375b39ddae80526e0f95e8e1743c0ff38