Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

10-alpine-fips-dev, 10-alpine3.24-fips-dev, 10.0-alpine-fips-dev, 10.0-alpine3.24-fips-dev, 10.0.12-alpine-fips-dev, 10.0.12-alpine3.24-fips-dev

Index digest:

sha256:7230162fc7a5a5e1b7ae1389fba33592f685dac9cf75aabbce3f3c68cc4d8ce1

Manifest digest:

sha256:21553fb67ed9509b914c533939f5acf7e0f04d38e75167cdd9443787c68df845

Size

58.88 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:10-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:10-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:ddeb979a64f6b873bae9989476cf70c1e6d671c75398ee45a111057f8fec49b9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:dcf40b78557b88dcac5c95d5ed82f6595e8e85790d6e6161a02c48116d84f7d3
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:2b7408c988b31f29cdb47d3e6fe8e2101c95c76a13c5ef42970739aee6f899c1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:368a16c75aff0dc088cca57e2c3860a5f299dcec8b2b94ed00df25a8ae5d18f0
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:910f694e279748d6911ded8f93d671345022c4b46ada90984a0bb9465858a0be
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:6d0481b38859e0114ffc36fcebdc411f8e351d6f666544923100cd0a4bcd0f1e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:ab1d62f4c6133cf001f61bc28ee2d1e8fbd1ae8f72065f0c552c4eefd3eb538b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:99ac399707dd0f0acb620bc685c646c4e14f4e29c1b366eda5a36c31dcc88474
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:ac9a99906d372eff49a47f7ba11bb7357c3b9a007bce115ec297d7b053a1bb17
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:f60369830eef80caff75c88e750132fbc3e3bdd46f1235defbe54dede0bdea10
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:015e4ac8a11350a28554f0dc43d5de039160f46e3de33f984f33a49becf20cf8
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:2e63d66f6f39993f93072309c1ca1c70b8b3c184b4f0a615bf615fc2f271d41b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:3d115ede76d03b2cfea20645dbe64a673884726fd8cf8918d4923ebc5461d179
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:ccdf258e66d4d76cd35660f388ef5f9b00f629aa95268e9283d3fd2c747dc7e9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:7c7e220e3889e122bd106683e4661d0b667e1ba964772489677ba46ca29c2010
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:fa46cd345d67c41c427d298de3ec62c320bcbd75a5fa5807e2c2cabd331ce6c1