Sign inSign up
OpenSearch Dashboards

dhi.io/opensearch-dashboards

OpenSearch Dashboards 3.x

CIS
linux/amd64
debian 13
Tags:

3, 3-debian, 3-debian13, 3.8, 3.8-debian, 3.8-debian13, 3.8.0, 3.8.0-debian, 3.8.0-debian13

Index digest:

sha256:62b9954e21a7240e9e335e92f82e7251b24d82969fe962f1b9c00f13f6eb5ffa

Manifest digest:

sha256:941252558557a09dc777d37929855a1eb6d74aaeb70528ebe027f411ba75976d

Size

298.27 MB

Last pushed

2 hours ago

Vulnerabilities

1
7
2
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/opensearch-dashboards:3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/opensearch-dashboards:3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/opensearch-dashboards@sha256:0e478bd891a54a7b384fae0b1dbeedcc1e897a1aa45af90fa9e17d7550c3c50d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/opensearch-dashboards@sha256:05827bdb319aa0bcb0df6bf55517aea8d4467a8d27d2f71193c1f09f3138c0e7
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/opensearch-dashboards@sha256:a8bb3ab7e4422769504874a34c80c3e75a84407826e76eb489ea020ed916863a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/opensearch-dashboards@sha256:4e43729c28b16312a1266e9f21c91422825e331771707adfa60a64f985341d74
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/opensearch-dashboards@sha256:236205ba6d388d1cbbc0475de9d9a5b036db78d98fa6bbde96cd7b7686874bcc
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/opensearch-dashboards@sha256:fcec608ad5920237ea1ca7919f864b1cc4ea027d3df48679675d3ed6dd0908b1
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/opensearch-dashboards@sha256:f49d8f0a85239aeb6f701396e3f29843d77bea00cb3b5cc2ce137fe4e97bcf06
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/opensearch-dashboards@sha256:1384281f879a32cbfff41848bc4f6d0061ce5844e73de347afb26ef1a9e3e0e9
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/opensearch-dashboards@sha256:fd3766536e8546d43ccc4cf63de12810b9f5249efce101882c482b9909fc822e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/opensearch-dashboards@sha256:7750fee39be84f8327235032ae98fee8d57e4ee9fddf37d1858f1b3784970296
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/opensearch-dashboards@sha256:32d49a8cc9cf98791a771b8915a59dcced747585d7002186dc481f811ad64db7
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/opensearch-dashboards@sha256:b24ec51be0fd22000226647e164bb52bbb170356cb6a076f67fa4e8cf665ec15
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/opensearch-dashboards@sha256:24ddac1d3446d507ab8370aded10497e3b6ac4f5e07bdd6d774cc8744f58c8df
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/opensearch-dashboards@sha256:76b2dc1da8eff90bf7542115f113d221354968bfc3aa679e466239417339a282
SPDX SBOMhttps://spdx.dev/Documentdhi.io/opensearch-dashboards@sha256:75aea54a79d0e87e4c2ecb24f1ced72786de885c1edd06815e0ab44968810178