Sign inSign up
Rook Ceph

dhi.io/rook-ceph

Rook Ceph 1.19.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.19-debian-dev, 1.19-debian13-dev, 1.19-dev, 1.19.11-debian-dev, 1.19.11-debian13-dev, 1.19.11-dev

Index digest:

sha256:5fa17c8aceb7ac9086a6d08bbb40a154585deb7dc918610e360762fafd760b19

Manifest digest:

sha256:37c28ee5e76ab4e2aaa39f1acccd92c65184d35719535515860aa924e345d085

Size

299.03 MB

Last pushed

1 hour ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rook-ceph:1.19-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rook-ceph:1.19-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rook-ceph@sha256:6093803baf03eaaa3aafd9860159720226c3cc48fdaab45820569bfbcbbca7e7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rook-ceph@sha256:abe7fcf652240e68b8cf3916b87841fc466d3e37c04cb1e20a7f0902a1ca6edc
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rook-ceph@sha256:2d77454e7ee8b14bfac14fd81051535794a6adaf97f7e8d5fc4654d39a2b2ade
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rook-ceph@sha256:1144d206d121b8049d1f5226fb55c6781c44309fbd60165df4744da13adfdd17
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rook-ceph@sha256:0b787f2c477bb70b22a60edf44ccaf1ed18128db9d887c4d550245cc06e68e63
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rook-ceph@sha256:4458a245905d8fe983eaba12553b9a77c3c09fbf4944a7307cc9ef97548ba28d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rook-ceph@sha256:90cbe79d97decad60045183d3040b9e3a0b30b2423b85fec2c7f9e7ceff1d177
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rook-ceph@sha256:fea4d0fe471afba94e0e0eb67579c9288b4c11c58e6c18bd7f36a7785bf61110
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rook-ceph@sha256:1e6124b2ab8f4bce88948e6fdeec1cbe183020065673e5fb996beea1d32b3220
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rook-ceph@sha256:1d1db6b15b040ef6ad7678dcc49484f4afdd3661362c329c2a3d6ccd8d94db2f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rook-ceph@sha256:09cb00e6b08b0cb47f9fc739afe7d020151bb0f98792aebdb40067bef6816fb0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rook-ceph@sha256:8d1b897c0285a14d4b0b13e08bf091ce87563b36a633b51406df821329fa7ff1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rook-ceph@sha256:d9296b8311dad67096f4bd08328acb43c9a1460c13ad6a9352895fad5fb3727c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rook-ceph@sha256:43faeafc15f1515f70e57cdedeb868f9d889cbf9e855a1f18f8f8e464fc8efb5
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rook-ceph@sha256:7dc304286d469c952fb55774f9a6ea03123735308b414c4a8772f74891e3d28a