Sign inSign up
Snapshot Controller

dhi.io/snapshot-controller

Snapshot Controller 8.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

8.3-debian-fips, 8.3-debian13-fips, 8.3-fips, 8.3.0-debian-fips, 8.3.0-debian13-fips, 8.3.0-fips

Index digest:

sha256:a2e09ec88896bd7b5c57b3a99887bce1ffce7a295e7192ecf173071107749d16

Manifest digest:

sha256:3289b3142cc410a9d9a4febc6867cb69a4b17e141ad3588e5045dc83d94551e5

Size

21.25 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/snapshot-controller:8.3-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/snapshot-controller:8.3-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/snapshot-controller@sha256:7e66a1aaf92f929d235398e505a90031dfd3e60cd975faa2127c03b0d91e3e5c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/snapshot-controller@sha256:69a2f159cc154ef921f26297666de714e47e1f3908cda86d794b01a645d7f360
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/snapshot-controller@sha256:0e388f21e1ca3da2236a59f1fa991d110d52dc118b38fa1a66199cfca745801e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/snapshot-controller@sha256:b3b6b5530aadb5d82f856c3d3e350f1ec864a276fe491f2cb111cc112416c5c0
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/snapshot-controller@sha256:a766d17a9423bb4f9d3b9f3ed255343b52583310108fb5f8942c8e05a1c761e5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/snapshot-controller@sha256:a861e146a8a6e981c1f738253e0b7023dea144c7586a03877f8b28cd35f81e91
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/snapshot-controller@sha256:96271e6f224141a132ffd09199c0ff2af4edd66f2cdb95f0781bd72d7cf8880b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/snapshot-controller@sha256:24035a4467b54d01bc8ef7500db17c67fc3842e45f4e5e4894b0b6988837bd65
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/snapshot-controller@sha256:580abdb20d301e476e9761cc5ce02af9aec4d94343c8a78f0d9d6c1193967dbb
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/snapshot-controller@sha256:18eeae479531a8f003a46924b429e61550e0b6bd26ba9d99c326c38ba6072c4c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/snapshot-controller@sha256:b9e25f25e6a7925c7de6b63eada0a1b1738cd9d0011d3dc0e11b9a5e8215d69c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/snapshot-controller@sha256:55b6ac9c291451e5cb89b512d477352719c72dfe2f2803f9bc548920e7f9f81a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/snapshot-controller@sha256:60e2c9e89121ccc5063905351f557a9a47c69c5aba2e1d406605db826414bdfe
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/snapshot-controller@sha256:ae0245abbf81205b57896d7a3b7979ac781d4616c41b1f99d2f9560e74fd9d24
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/snapshot-controller@sha256:162015efaf7085ef07d6486f9a31aeaa56ff61ab953c70e4bd27bfddbefa0e88
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/snapshot-controller@sha256:f095df6d342491a835a0c1ad9287fc391f6e9b7804440d3b5fd4a548464f3a6f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/snapshot-controller@sha256:050ccab54b8ae110274fc6f37e1601a60a59202a4dec27a46b5e9dae2f9fb804