Sign inSign up
amazon-k8s-cni

dhi.io/amazon-k8s-cni

amazon-vpc-cni-k8s 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.23-debian-fips-dev, 1.23-debian13-fips-dev, 1.23-fips-dev, 1.23.1-debian-fips-dev, 1.23.1-debian13-fips-dev, 1.23.1-fips-dev

Index digest:

sha256:5ed53e729ada053bcb8ce45389d6794fcf8dd99cbdd8476ca4f770af30dd13e0

Manifest digest:

sha256:c9329ca4169dfbd59b021706c86ee8c15c3961507acf98d96b33a4790cb42f84

Size

90.69 MB

Last pushed

12 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/amazon-k8s-cni:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/amazon-k8s-cni:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/amazon-k8s-cni@sha256:acfb8bf343cbec9e6769338b1388ff7bfe135ddc5c7d08d7f5ff0e11f72d4582
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/amazon-k8s-cni@sha256:76438e7970f92cb149b1690a5018f8f9b36fc62335f21b49a5411dbf397abc47
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/amazon-k8s-cni@sha256:bf12fd7c64a452dd9b2ac164557bd77153e0a0591e3fdbca9f7ef8e7be8918e3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/amazon-k8s-cni@sha256:32f01e402d92befce4028af6dd246bc0f699f7dd48930bba51a952562ce5997d
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/amazon-k8s-cni@sha256:bae18490cf43d4f95172472641984578268982a9ec368ee4278681d15b0f5dff
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/amazon-k8s-cni@sha256:5d324c41c63ff127bd0114027342128c3f37c4f3678341a4f51c863d8b53a8b6
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/amazon-k8s-cni@sha256:542f2376d54b4483898f28f3cc24332aa4ac8834d38e7d0dc5bb4754731b1bb1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/amazon-k8s-cni@sha256:bcf42661861c84db5e198e5b7bba74c49233262b96bf326baba3c954915762e4
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/amazon-k8s-cni@sha256:2ae5e51e801604a90a2b34e14c7614b8502356ab587b72c219a02ae9f65b5993
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/amazon-k8s-cni@sha256:2482f471a672af4392c917729658f8d78d616a94f602ff4b010cba23315007b4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/amazon-k8s-cni@sha256:080e75298246c7b432adfe7fd6902977bc0b204f6d5238abd9329633d820df60
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/amazon-k8s-cni@sha256:5dcc07be21748568b1daea3c8cee5029f5603d68ecc5432efde991b7e2dea5c6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/amazon-k8s-cni@sha256:3ee6b69954d4b98e5de7d31d1060b9a9c7ad539b6b334dfc8f03a40b977a1bd2
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/amazon-k8s-cni@sha256:045bdad9fd84a1c218951ec39819d6c4590732521415f587bd4795fe8f3d151e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/amazon-k8s-cni@sha256:01f9a89341f5b4a3b6ecd1870562f9af109b0a83701dde11a928c616cd62e48c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/amazon-k8s-cni@sha256:ce3dfcddcc693f5eebdd8500cea1641d6de74372dd62ebf1a5d92bc7c83c72b8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/amazon-k8s-cni@sha256:128aeb5e44cb064500a790a0fb74a5bf557d318e3ae0706895ac8019a3d24e58