Sign inSign up
KeyDB

dhi.io/keydb

KeyDB 6.3.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

6-debian-fips, 6-debian13-fips, 6-fips, 6.3-debian-fips, 6.3-debian13-fips, 6.3-fips, 6.3.4-debian-fips, 6.3.4-debian13-fips, 6.3.4-fips

Index digest:

sha256:2427151ae1c1764badec3fb949a1c18734acb2fd53acb20d990d879ef6699ba2

Manifest digest:

sha256:ccdf50c2e5e454b385e43008601f65cfa5460c4c5e52f3873fc0e2bdd9c8f9fc

Size

20.16 MB

Last pushed

6 days ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/keydb:6-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/keydb:6-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/keydb@sha256:14ef97e514495c1b592cddc65bcf813c2ffd6658496ac9e1b6a28000b7a48e42
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/keydb@sha256:79e66c75d73852f0fa07f8952d1f4dc866f4b301addf967ef561b14cccdefa5a
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/keydb@sha256:b452b1ce55fdb9404b67131b70c8f15ed54d83d9b3e55363ec327cc5ca7fc4e9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/keydb@sha256:e5e6d127bb36ae08af9c589838ef3378107562ce12767a6105164cd2a04369c0
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/keydb@sha256:c327edff3dd86a3b02c6688d1b3cc5fcde3a14fcb6daa4113a5964ba22b5b31e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/keydb@sha256:b52791d133e2c9fef13995c632ea720304a7a490874a77de8a3b58f17bece8e5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/keydb@sha256:5500ad54e8233e52935d5b3887603ab0b054d9c9266ab726ee45aa2fe6a7b1fa
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/keydb@sha256:fe854bf97c5f3e500527deaa50a0242c89808b6f512e2e95ee5bd1e4c069abf3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/keydb@sha256:711febeaee7d8827abad50da670c866a49706771baf58c49b2ca232d8aaf8c08
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/keydb@sha256:e55f2a3e28f4868c02d0f1ec9b5757adae4def30eea009116cd998135f181341
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/keydb@sha256:5745b419d719ed68501f731e4aeb9708e53ecd0c3b0333d868db422685b7e733
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/keydb@sha256:f1df1bcd801aa12ba2889845a6012e12c449876e8c166ac8e54a101aa03a09d3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/keydb@sha256:7372ef66e41e432b9f81ecf6d10c80b8b4836e04a5c9070f5220f7f21fbde8d6
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/keydb@sha256:66f3c77916b3322b1e5d163344478b28aee5755b637fb7e495ff16a2f395e1fd
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/keydb@sha256:af5a35d4709fe4c94bb5aa487b3a5350758ea32f4c82bef851718676476aa914
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/keydb@sha256:237ebf2fcbf0a26de04f1f9d8d9f0e6584ef689eff6cbb639f4e413ec444687a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/keydb@sha256:45968a21b1bda25e7e31f4694401ce8ac674dc79f3ce02cdeac184a254dae8d3