Sign inSign up
vSphere CSI Syncer

dhi.io/vsphere-csi-syncer

vSphere CSI Syncer 3.3.x

CIS
linux/amd64
debian 13
Tags:

3.3, 3.3-debian, 3.3-debian13, 3.3.1, 3.3.1-debian, 3.3.1-debian13

Index digest:

sha256:20b6895a71e6e0e4f3320ca632d9886423035a999ce6a5ec19113767b6ad3f8d

Manifest digest:

sha256:f54aa77732fdcf1ca31baa8c34f4ea15728c968585f4d525369b0e3861696a4f

Size

16.67 MB

Last pushed

11 days ago

Vulnerabilities

0
0
0
0
0

Support

Ends Apr 2025

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/vsphere-csi-syncer:3.3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/vsphere-csi-syncer:3.3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/vsphere-csi-syncer@sha256:6d48bd51eaf77022fe58688ee526e6936d0afc1383527373fceac30ca06f1a3b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/vsphere-csi-syncer@sha256:06a2d2b786ef3ee3e25ad21e9f2da120f8567913e92e965e3ebf705ff761cf75
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/vsphere-csi-syncer@sha256:c24bdc709ed477ba956d370cd24c68d9d2760050cbff79db7f3b6bebc3648b40
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/vsphere-csi-syncer@sha256:3beda39e98a5cb5bfd9f2b960da4658da93e42387e3c45783c01ed1f99e65e1f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/vsphere-csi-syncer@sha256:4e393ab69fc036b522f95cb493fc5f6b37deb351fb1b0cba87b067ef3b46d7f9
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/vsphere-csi-syncer@sha256:09a2166e471e2b8a5f35e534ead9eb73bd8aa3f6244ad2750640d9652ea8eb5f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/vsphere-csi-syncer@sha256:0bd13ba322905820c97905fdbd920bec2d953fa992b9f35705ef936ecf8529e0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/vsphere-csi-syncer@sha256:00207d0131cb6905927f3159a278db18e071a60438f10f6cdc431ec71a36ff0a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/vsphere-csi-syncer@sha256:ce3ad4a43fafccfbe8d01ec175a61ccc231e45c9729ca3a94e65700b83c583cc
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/vsphere-csi-syncer@sha256:28c02a923db98a9b4fc3a6d8c78559fcb8637962f1f522c1cffe36359f27cad9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/vsphere-csi-syncer@sha256:ef039ab34339db0b09b51c9eb35dc6622bcceafab649b503c6d81634c02a8b9c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/vsphere-csi-syncer@sha256:99aaf824e9b623361720c3873cf14219198f71e1fd584eb41320c45aea94fe57
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/vsphere-csi-syncer@sha256:e393218d842e4a41e39e97b0e045c57afcb3733dc6c2f6f76d830d5fe5ea6c17
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/vsphere-csi-syncer@sha256:c3c70b677c7a43246b93af1a5ab24cfddbc99d0a95e0a3ba262089f98782daf0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/vsphere-csi-syncer@sha256:aa74d4d4be32f9c7781091a4746cc9883de5c8dda6f345274e36dd4a5087f2f4