Sign inSign up
Rook Ceph

dhi.io/rook-ceph

Rook Ceph 1.20.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.20-debian-fips-dev, 1.20-debian13-fips-dev, 1.20-fips-dev, 1.20.7-debian-fips-dev, 1.20.7-debian13-fips-dev, 1.20.7-fips-dev

Index digest:

sha256:f77cb3f36d843badd8a940b7b51445eced5c26d617aadbf32d1e2a8e51f54639

Manifest digest:

sha256:280f2c36978b2e747e371b774c3d0b1e44b49790c7c14d7eb3526f142442a280

Size

301.03 MB

Last pushed

14 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rook-ceph:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rook-ceph:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rook-ceph@sha256:8cfb67d764650ae1f04dbee0d9271c017cbe51da513234c868a0c738bbf12a67
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rook-ceph@sha256:a42ac1d8adb35840a786ba57d71c308adec3fd58bea8046486e4d49a05679e76
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/rook-ceph@sha256:6dae6b4ea19990b0ef9aac8af404d52f79f3fe5529f9002eb6be15a02eb86d14
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rook-ceph@sha256:11b8ea368be00a9b2b7377b277680153ce122e6aa31c5be026558e8183ee7606
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/rook-ceph@sha256:4e4410c8fef358dcd7909a7b5e705e9302749d96812d02c171eea33dea158d91
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rook-ceph@sha256:ab91621355ecd67de91c3cd1f041f6803283ea303154ca7460e9900c2774a14c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rook-ceph@sha256:10709bc39e5368071825db2764e7f5dd89f20d038b0e5d5d104d46b1b87ba4ae
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rook-ceph@sha256:89a5f32cbf5ab80c53de159334ef7e83908fdfda1908d050d4f79d520315f4d2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rook-ceph@sha256:0bea78d2d3a7e33bdb08d2d133f0d352609eabe8042195f6725b149588ca744b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rook-ceph@sha256:a0bc019dd9f75423a3ffed5903e9b603071e894e2c922cb4a39da38347b16af6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rook-ceph@sha256:7a345281e008189c7dc2f82b98b55d62102f9631f8d1bc8885d56d0fed1577f8
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rook-ceph@sha256:53f0bbd5f4ffe9fc41329eb14de14a8766ef1aa7375715bf65e014ef604ba965
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rook-ceph@sha256:95f7bd56af35c778424c8c530da096c23f8807080b8d197fd879fb1946e53a93
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rook-ceph@sha256:3e9190c447d696cb9c318887fe6e16886ac52dce8657897b4402806e649eebb5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rook-ceph@sha256:ba1559ae0488e4a49c025303a581fac822134e25e4e8a53c58fbce5b82f68ca2
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rook-ceph@sha256:80d3f83b4ee76cac43e1271ae07085836787cb00385b5c393bea8accd9ced1c0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rook-ceph@sha256:d85a6477631772bcade4a10f417ccc010ee6770e811fb373e3002c3077644701