Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 10.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

10-alpine-fips, 10-alpine3.24-fips, 10.0-alpine-fips, 10.0-alpine3.24-fips, 10.0.12-alpine-fips, 10.0.12-alpine3.24-fips

Index digest:

sha256:d97f86fd4d49b7ddb7b4dcea472135418715a29585293fda61361a51a4d7e36d

Manifest digest:

sha256:ba79eee9fe2ccec016ef644d2ba6e852606cb144d5764c709a1ac463eaab211e

Size

54.98 MB

Last pushed

8 days ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:10-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:10-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:3e3540ca487edac769cb11fa39054d91f00a937f13b14d8c0e4cc0fdf0cff75b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:eb3dfc29661d17faf07f32c55fa754ec51c44754c00c2a42520e748c01ce5663
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:7b6010a8a0769f1d838782b3d40949d697cc345aae7005307445fca952f41a0e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:e6d4b07339ec95242ddc0b104964f79680d012b28b05d9584d29c19557e3f59a
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:f1225fa798b7e29da17278c4ade77ea78f30f986578194649597db3bd8b26bcd
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:06382df53e35cf592a53329be1caf682087e02dd304527f6c36fc1ec728a2623
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:691e16e3cd3be59ce59b891e558e454330d20b8553fb66e369e055def1a7da8c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:36ff1fa1c7ead03a0486caf1bc30460630f159e29721ee769fb9adbd19720c6e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:e46c6d66aa3b05cab5ae33af029bc7815cf56bed3b6a335161a4156d032dc740
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:5ce988ca81195648d42f918aa370d25740ddefdea9218b5f8ac2b867885826f9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:9e757fecf2a0ac66172948129dbb32d7cc1fda6e60f2bd41fa2c2a9731d8e1ff
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:473219d0b53304064fdd047f11120d32c342369d5a65b804fb859273ad91aa52
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:f36434a501c2cf60d4a6d6704693baaf68a54950b538f24e2f7819000b22ed69
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:abbd55e9ebeb3deb8bfc3110290d2108f74a43a540e5e654ca7cd465bc7cc27f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:179274bdcea8c4256cf5fc2761a25d4430ef2ecb699fda7e7ef692f149d23f33
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:ad47727905d50f21f38364854e71e3e08f15dcfe6a4ff92f7f3fc193a3bfad82