Sign inSign up
Patroni

dhi.io/patroni

Patroni 4.x (pg18)

CIS
linux/amd64
debian 13
Tags:

4-debian-pg18, 4-debian13-pg18, 4-pg18, 4.1-debian-pg18, 4.1-debian13-pg18, 4.1-pg18, 4.1.5-debian-pg18, 4.1.5-debian13-pg18, 4.1.5-pg18

Index digest:

sha256:75348a63c13fc2555437970de70d627ee8f839e2f20d58d00076e23e811a18b4

Manifest digest:

sha256:1040d97a1701d0a015c1929daaf850d24075a7f186b0bcd816ed3e6cf7558e84

Size

167.47 MB

Last pushed

11 hours ago

Vulnerabilities

1
7
7
14
3

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/patroni:4-debian-pg18

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/patroni:4-debian-pg18 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/patroni@sha256:8bb3cc45126e6b8236e5a50e82507c14a741a935229e4a3d535446c4bfb751c5
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/patroni@sha256:98e5be31a42c15fd4c2ed477a501f43fa88488a26be8917992bbe11ae1199581
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/patroni@sha256:030f95390efa3ed7d76fee314003dae7d7a836683fc104ba321e97f457bfbb96
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/patroni@sha256:cb9cf40763bf7edf64be6c60029ace513b78e08ae4ad0e2fdd76ecdbaedb3f16
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/patroni@sha256:cbb220e54ee03ec44deb0c244ab969605e5e6861cff8591f50f936ab8df7660c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/patroni@sha256:6caa7140e82a97e92a91673b10c6bb22a6d187a3f13c11c2fc5d86ea4bf144ba
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/patroni@sha256:315893bb8c6bed33433e70874184adc6efe4aa9006177b3944d662fa7ad768ab
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/patroni@sha256:2475d0e92158750fff6a28ed9215de95d6b6a351675a7a4be9841f449f46a1b3
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/patroni@sha256:662fc36f91879006ee3f1ec497951065f8175dff6a0002ae80114da08c9ee05e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/patroni@sha256:20a28fcd87761fa5ca7daf6f574219271ad90b6e6eb5ab91b925fa389e171747
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/patroni@sha256:7a1ba53888743cb516a4ffd6919f6012af2406b9b09c415c4732df25a80358fe
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/patroni@sha256:5dfe840ab80bf36c4d3ef970aea5b52e8aa39bac3b6be7b5ca56556c29e46797
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/patroni@sha256:26233456a1c62f681863b164715c08d2b26fdbfea0bcd07d291ff608b0151c39
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/patroni@sha256:9f2745b514179727620f5da9a3d92c1faa1089d4f46a517e420a495b0e9f431a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/patroni@sha256:052ee37376c591aee0764dcd3ef46deef9f1aeeca02fe1b0fc4d330c0cf0caf7