Sign inSign up
OpenSearch Dashboards

dhi.io/opensearch-dashboards

OpenSearch Dashboards 3.x

CIS
linux/amd64
debian 13
Tags:

3, 3-debian, 3-debian13, 3.8, 3.8-debian, 3.8-debian13, 3.8.0, 3.8.0-debian, 3.8.0-debian13

Index digest:

sha256:d04dec86ca9eaea0da97d20e42167d5dd6079fa7d15544bee32f02852630d402

Manifest digest:

sha256:88758392c8bbddad1fde71ee8212221eb1171c93585bdcbaa8217f243faada4c

Size

298.28 MB

Last pushed

1 day ago

Vulnerabilities

1
7
2
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/opensearch-dashboards:3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/opensearch-dashboards:3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/opensearch-dashboards@sha256:5c0a8efe1a1af8bfb5dfbf4e875e233c86fd6e4e2d5526d72072df3b07962394
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/opensearch-dashboards@sha256:791a47aaedee8d0cfa5a796b13d90cfc7aec44c1f79eeb5ed1f4d356c6be756a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/opensearch-dashboards@sha256:2b736be3c2147597ee3d47f97a84c7f0361a146b1416f3f5613768591fe7f1ff
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/opensearch-dashboards@sha256:e9279d4fb18550dcf30ed71e0ba6c2057aa0cca73c44e8c4ee71dc819ac30a0f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/opensearch-dashboards@sha256:51aa26a7c0c814cb91075083519bcdfcaf2532cf26acbd781538502e5e544831
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/opensearch-dashboards@sha256:a9577a4d7b11284ed8d2355b85e442e70eae8ee565b88be13cbc747c6ffb5529
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/opensearch-dashboards@sha256:7e00fd01f37f60c8b892bdbff111b05e2f953d610153caf44b3b59a474d6c318
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/opensearch-dashboards@sha256:041eedc36137fabc6bd44233b1e847b8873adbdc12da84926c8b6cf6e1ceeedf
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/opensearch-dashboards@sha256:a92f06c7811a048c5b8a8302c4f94003d4a0644d83a68a88486e71ec1919ccd5
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/opensearch-dashboards@sha256:d7b89f3c8a917d49ef803f974c68699d76d27944ddc16985e295608930668a79
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/opensearch-dashboards@sha256:46e29505c5290ce4e99cfdecf7fd269010a9fd7dd67099c915194357a1d4970b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/opensearch-dashboards@sha256:11d961f9620a22aa5fe365cc3648cd6f57258e60bae7ef7632585a1c54444c20
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/opensearch-dashboards@sha256:0cc06edbccb8720f201e995f64b25353d4b2cf6a525f4a0986b71a699c0899fe
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/opensearch-dashboards@sha256:1e4cc79e2fbc89cde4ce0a940497cdd0cd91184d83f36fee496e5f288bae8884
SPDX SBOMhttps://spdx.dev/Documentdhi.io/opensearch-dashboards@sha256:04ad9ce15e89bf8e383527ed08504912bd43411a79cbc35c0dd3373661f9dd17