Sign inSign up
Rook Ceph

dhi.io/rook-ceph

Rook Ceph 1.20.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.20-debian-fips, 1.20-debian13-fips, 1.20-fips, 1.20.7-debian-fips, 1.20.7-debian13-fips, 1.20.7-fips

Index digest:

sha256:4d611d30a9543fbf7816092bdd838e7a522e711b082a15025816353f7823144e

Manifest digest:

sha256:de70b87bf6a211834520c1879d95d9b21bdcd7274a031424b968167cf35819c0

Size

265.73 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rook-ceph:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rook-ceph:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rook-ceph@sha256:20558941269972d8d88a7d776f2d1cbb1a3092a97a534f11754361ada6aefd34
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rook-ceph@sha256:335fb6e09e7374953716cdf17390e0d9122c864710cb6ac27adbabf5a92a2578
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/rook-ceph@sha256:d7d480e08f14562052107315b0562029949bacfea6139129eb2ec6628489171e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rook-ceph@sha256:5704a96e2798589f907b9526399a5c859a3e26bbbe7b65f53728666e69074ce2
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/rook-ceph@sha256:ecb0d271781ff84b52d5e4a543b943f1d2a12f475de1f4263368e4607d767864
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rook-ceph@sha256:481e6729b2785d185d425a43f3d7c6253ddb3c27fd4ac768c9878678ec16e543
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rook-ceph@sha256:5e8912cc76317a6b3422f80db8a1648f421a302c1c4a5dc64dee8dee09397015
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rook-ceph@sha256:04e1c4866097219ddebde62e598c0d202c78fce00c337f3334ab4249dd8f3879
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rook-ceph@sha256:6ae2449bcc5d948deaf49f3ac46fe9c9032208ed1a8af7c62e414d21a6e866fb
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rook-ceph@sha256:fa927b7a34c7334828c52ad63fe60880316505e0bbf03d27a91be2e63209f15a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rook-ceph@sha256:b69c59bca4dad997b1526652c06633281680de0eb19542c193eb9c7e49cf978e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rook-ceph@sha256:7196ec9cbc8abbc3c80e4047bd44d60bd1d832ac619c894013949e0291486342
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rook-ceph@sha256:85ddf56ca2e42b04adb09fb86e2c4521d2f5cd3c8d77a41321baf29872abb398
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rook-ceph@sha256:daa8a68b52c289dda9a7164fb63075d36e9f67d3a8b992fdf172b6069ab8d9e0
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rook-ceph@sha256:485fa93cb1d52a975e18383b05204f9cc91077737cd81b43010e24e255706222
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rook-ceph@sha256:f4219ac85c4042768f1beda5e90a5dddd0cafad7f4abc6430aef8c41fde111f4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rook-ceph@sha256:4138eb96f93b1464c806d1e8e58832408c4aa0b82a09136568c3551f4a79b000