dhi.io/rook-ceph
1.18-debian-dev, 1.18-debian13-dev, 1.18-dev, 1.18.11-debian-dev, 1.18.11-debian13-dev, 1.18.11-dev
sha256:048c207ee5def8ddf42118afd923859005da70104e2507357e7366313f5829a1
Manifest digest:sha256:dcec5ac748a1744c9781d6857255ed356399b706fb3ff423aae652591cb342b5
Size
287.08 MB
Last pushed
8 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/rook-ceph:1.18-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/rook-ceph:1.18-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/rook-ceph@sha256:dbbfbd9ce66660ba7065d40bcc9142622a3037e5524760e2228af919c3abef85 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/rook-ceph@sha256:03e1be87cf2a052fb128175abbf7f0623b2deda7ea6f4d6335096883c1f4399b |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/rook-ceph@sha256:6756821e221293ceea06ae072625340ff94b462fc24fa5bbc67af1059d34c257 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/rook-ceph@sha256:321bf6c03abebdc4c30f36326ad80fcb485fe5c47223bc2f2a33e3efd3b3b5be |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/rook-ceph@sha256:4aea0a92aed77c583db32e55ff1746a6b392d4be0415e7afebbfa7abd17fc8a1 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/rook-ceph@sha256:8faa06b98ce2e9ee84a841fe9137caba6ec429312f255c67aa0f9fb2e45d68ec |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/rook-ceph@sha256:a0a4d97197f09aa662125b175fad8edcf135df069d2a049a3330f310358e99dc |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/rook-ceph@sha256:14efe185d9b8cba0a087d8f2beebc182f74af5913bc837cabbec2f7564a7f5ad |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/rook-ceph@sha256:5eca45b12eda11e17121337941d4f5354b82761f6a54dc99b5b1524f0579881d |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/rook-ceph@sha256:6b2dd98e98b013a0bc450c6630ceba9d4f5abae3287af5b163df533314920ef2 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/rook-ceph@sha256:d70a030d7de7a70a11f299f0a8c5c2bd22e7be2cd5151c2fce68d154ac847c85 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/rook-ceph@sha256:72996a1d71aa44c1b0287dbbe4bf20e72e311f2bab9ec043d7343b06167159b6 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/rook-ceph@sha256:fde671352cbc7adb262ab3ed3957d046c9967b6922fb4f44ae7dcabbce71069d |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/rook-ceph@sha256:e67d4e3d1e980a49756565d059f53702b2bf9b73b1d32c4c7a54eb03ee512c37 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/rook-ceph@sha256:42bfb9118200fbab913e7161ae9fcb5c8d4e0c48d2fd52fe269f85f9388857ce |