Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 8.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

8-alpine3.23-fips-dev, 8.0-alpine3.23-fips-dev, 8.0.29-alpine3.23-fips-dev

Index digest:

sha256:8f2dec28c5384425a86f079d604cc77600e65a0e572d05ed9daef4e0504b8ec5

Manifest digest:

sha256:d66896cd2c3299655fc064b98d9afaad1491984d1a135ae0d2de16c2be182f46

Size

56.54 MB

Last pushed

7 days ago

Vulnerabilities

0
10
5
0
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:8-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:8-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:4b8c80c58d596509d3f4729f0efa4efd3fd15a899884b0541bb9df08c5f50148
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:78729fc2b615a5e3d71b94cbd4af735fa0c1216bd5785b6d9d07677f4ebb9b5e
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:00ca39acf3cdcbed97314b6787f279dffc4c0889ba7e058e336e53a13ee98304
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:46732621122a3a76d9cfc29addaeca0945020aba8904c0fb555d9bd7aaaa9e28
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:35e69be3d8a5d622ee561a179c58c3e85f35a2ead94045e9be3711a4cfe879db
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:1c5f2758193e6b113ccb9dea234eccdf49a5331312ba630e84228928807f9652
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:3bce288860d836341d72a4f5aed558445aa20e5679d85d333fbea02740ddf918
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:27490f0ae9fcdca61dc68bcb1b29e30b30c67155e22e2a123e16567a62d4d605
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:0337a47fe01073246b5c6972c24f92108455d2dcdf4ff1960a38e8417cca4c1e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:1d726f201bb4cd0dc6c0b8c25466850dad484773f3952c3e3c80137482e9fd7c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:d74c3daf99c270287ef638c15878afac75967d2b071cd7fe3167300f28ee6804
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:d6757e4afea8bc43a8acdfbd1ce2be71bc379a4993f46581f7fe6ce5502e14ad
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:6cffd40f51452b510bc86a3de908b9053d6ace30e58dc9b4c58740137235ff8e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:89a8932278f7a0af3be715ac08597b93d12ad1f75c690a86865c2ba3ad44e12c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:13595a2443954d6c025ad3e6f24dcfac050c573425ffb8d1c4f5bf2a8c87d2aa
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:0db0cf75059b22e3dad8962463f3c2f18e3f21573903f6ce38e25381f0dde5fb