Sign inSign up
Console for Red Hat OpenShift

dhi.io/openshift-console

Console for Red Hat OpenShift 4.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

4-alpine-fips, 4-alpine3.24-fips, 4.22-alpine-fips, 4.22-alpine3.24-fips, 4.22.15-alpine-fips, 4.22.15-alpine3.24-fips

Index digest:

sha256:c8e95126ece5e7bb40214072974ed249e2919552add7adb497cec66cc2d8ae74

Manifest digest:

sha256:103fc895cf044e4ef8a79600494c449c06d296a4230301864f96ff68d6fa2b13

Size

30.04 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
3
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/openshift-console:4-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/openshift-console:4-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/openshift-console@sha256:96f112d8ce771094954e73a7f717f863c1a703b9c05a48e237a6d278ee6cf56b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/openshift-console@sha256:99df66276efe4466ae0799920abb48a3c25355b2841a29b08bf94b58e1556d40
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/openshift-console@sha256:d17a718eef9b03d8697a89cf77320646607f01719ff61c3479c2798e7089b72d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/openshift-console@sha256:7f9aa55afb5268aa2a8b039a8c25d4827e7a1d44a2def834909bd5df1a2e1168
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/openshift-console@sha256:2ddd42f858bd1034e40eff6ecd7b55c52ecb1b2ce834782069d35c3e916a275c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/openshift-console@sha256:43bf6f36154228b3f36686762a8a2e3846bb762dc8d1d6050bb6745db3e7146b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/openshift-console@sha256:ca7e1ef9161029ec65577541e6ecce438cb473fe8ee4bf8d4b4e14b67878a1ed
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/openshift-console@sha256:3eb28db011dec11c58ead5d88960a9f0c18f70992202b23ca898ec161f386fd7
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/openshift-console@sha256:3140793e7278460005035673b8d002e10e251d09449521df8509dab1a066080e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/openshift-console@sha256:0c931a6b3c73f377e16ea3c0e8b636a89065f42d284157c12226b61a0656cc6d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/openshift-console@sha256:cf761660aba2e6124358745663a981964a4377bafe508514e972a4025d6c6e68
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/openshift-console@sha256:deb2a0e1f4a576153d3c75bfe0fb5422be4d69cd691d465b2624fed59b7d1784
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/openshift-console@sha256:ed6ccf30e7ffd2cc1d1e505867c6e475b9aefec026137e3ba713737a82558b8b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/openshift-console@sha256:49175d38cafc28573f13cc0148947559a13bb93b8bffa4e351a815683d492408
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/openshift-console@sha256:3f0e0073333a4b69fac797cb1aebb8ea20d447c82896250e946cf133e1b779bd
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/openshift-console@sha256:77d6c6be91abaf68a7b0522cf31fd3da8f3465f90bf278817fc0a1a02d7dffe3
SPDX SBOMhttps://spdx.dev/Documentdhi.io/openshift-console@sha256:623701784a75dd3c4b0a0a67ed0d937c9b6691564edbd1827542779fea37616e