Sign inSign up
Qdrant

dhi.io/qdrant

Qdrant 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.19-debian-fips-dev, 1.19-debian13-fips-dev, 1.19-fips-dev, 1.19.1-debian-fips-dev, 1.19.1-debian13-fips-dev, 1.19.1-fips-dev

Index digest:

sha256:8f08a193cae6b7651ca1e3c7924dc1eae46580f4aaaf5e9944f54a61ce813f6a

Manifest digest:

sha256:0da52c5f1fddb6018f57a5375e7cbf5759c2475bb6166b8c6d215a9ac0839f6d

Size

54.73 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
1
1
6

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/qdrant:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/qdrant:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/qdrant@sha256:08341fafa1855ce7c08a21a5f1e9ec54afdf75e67a4166e96018a839ecdb86dd
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/qdrant@sha256:b2ab1be8a1908def1d82ef2e1e531aec03ffa781cae10ba9c874cc73b6139779
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/qdrant@sha256:0590ec10ee3aa4c121522f891ffa769748a31de10fcc50305fc7a33f3056a5f2
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/qdrant@sha256:31e98854ab2ad90fdf5924f670f21aa80b04bc73acee9b06575bf88b2df93d6f
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/qdrant@sha256:c3703b6f0ba376d015f58e62577b5ebd547340000e9dddc051888a59027e28b5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/qdrant@sha256:4fc26727207e5ba7f1fd89e3dcd1d6b0518d9a1da7ff72ff6ca48512e3082248
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/qdrant@sha256:43f103f8f14a15ae6a5b205e19fb05d6c56cc6afe3cca5334685a127fb15b620
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/qdrant@sha256:da7afde89df10c0d2eb1e7f5dfd929449e124bc9125f4915f6f8f602054449d2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/qdrant@sha256:17ecc5e0640b654e07e12b8204201f8c58bc672c496455f2416ac5e7fb8a301e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/qdrant@sha256:c19d73a234053b000a8706ae4060c6449344088d74403bdf019a1c57a4be1cf1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/qdrant@sha256:baa3d17cd13326539ebaf3388cc1cd869b012d63eee8ce7bcd6fe98c0bef0cf6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/qdrant@sha256:b9692f5f0803c29f0f856a612335ff53854ed86d64614902b925124c6edacf3a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/qdrant@sha256:b7e36c47b094b324ac68b616fb55db54abbc547c02e8ead6bf2c5a9091c1870e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/qdrant@sha256:58158db4d1d6951f53bdbda1f918045fe1e99e0f4d874521c0df42fde299b279
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/qdrant@sha256:6fccfd8bcec591865338516ee9b9f16bf7a42aef3c0bf5f8aae4537743b17488
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/qdrant@sha256:e7b208fb6a9d747ad106dd4e8d91cd91ea20252d9f4c90bdda31a3af7ce4853d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/qdrant@sha256:859f9556a2f26c174212bd7bca46c06ab973a27f78176abde910f18fe9100064