Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

10-debian-fips-dev, 10-debian13-fips-dev, 10-fips-dev, 10.0-debian-fips-dev, 10.0-debian13-fips-dev, 10.0-fips-dev, 10.0.12-debian-fips-dev, 10.0.12-debian13-fips-dev, 10.0.12-fips-dev

Index digest:

sha256:c5f913506f90721d497426f23e95fa50f885545d7c3a7fafa5ad0cfeea20014d

Manifest digest:

sha256:96199106ae96cc9b2a90abedcada68023a3db37f91377cf9ccb4f58e8a53d477

Size

77.22 MB

Last pushed

9 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Nov 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:10-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:10-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:9e5d05c5d57177852def05e4e2736b840bd6c39189c106dc59f502fb16a42125
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:182e8e85832165d2d1b0fd3c4e3b77aa6644114a65c430916ef43e221ef12c41
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:a038db8dac7d1cbce2c9fb50dab572608ecf98a8724ce27c5011a13da5a04a61
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:c3000be097fb5d16c965677b56fd28432c5d93d1d3f4c3c1d410f1693a67457e
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:4cf60a7fde27af361a30d648932be546a9451c11b94262800b4a5fb3f6069e71
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:2602250a92afb245b13254178950c662006baf68b8b0c3c45e514b51c7a66080
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/aspnetcore@sha256:bfb28f12f2230bb3fa5d8ccdaabc5c9f72247c982ce025de7fde2ecde524648c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:24e7475b81ed3db07f4a705c936ee0e38ce6a1e4bdd9046185c146dbba66e3fe
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:8954fbcd0bb522ee2fe4a32436f76913b89337d647beb736360a55b169c2b6d9
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:746255a1e80b32a2621379451fbfc21da6e4a43f055e2353db2a7edd57144963
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:741c014c6bca320cebe932c5bfd40d9d5e7e9893e41669de50aec21469303034
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:d6606b9013e6a366bfacd4480006950ebf93ca69add2ad908e16261b45b075e7
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:ce0f459191fe2e8dcb1752c86f57fd8596f3cc009312d10fe4afff206d92cdd5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:23e4e762e5e9e10886745d67b0935dd80a002856a8dd4ee2da034fa8d1492a9a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:9efffc00518d7862921df580c2912d85cd1febe7ec27e9a1b3ea750d542fde61
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:8a0ffa82ca8688b20a86dab238021aaee32fc578f97fb755f3f6671cdee1da48
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:017b348f480b16e8c2194e6906d442e3ac76c777037e0ba61638e3a2ad16527a