Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

10-debian-fips-dev, 10-debian13-fips-dev, 10-fips-dev, 10.0-debian-fips-dev, 10.0-debian13-fips-dev, 10.0-fips-dev, 10.0.12-debian-fips-dev, 10.0.12-debian13-fips-dev, 10.0.12-fips-dev

Index digest:

sha256:faba393f16905a7e93f1d4bfc502d7b7b41aa24ce816e9361d85a6652efaa34a

Manifest digest:

sha256:fe804626792eb403718d3daf565fcb456c2ce92a7b15ad70fa671db922793553

Size

77.22 MB

Last pushed

16 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Nov 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:10-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:10-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:218543b01474d9633e6e9d06df61ddf570d610da9a7e4586aeb8bb9f7440b1d7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:1721449dce2e40d5f5d3a53a0d1b9b916c4eb6c70b69654f22df2cda4ebb3466
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:0004325e147d11d1fcc94cb23a6fa6e0a094c8836222d81a797d910017300298
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:2823a29b8447e9057c1c6b22720c0f485151512c47facf9e86fdd609b3928b7f
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:e4f39c3a454619ddf99d9f8f7cf40e2c1b44bbcca782f6dbfc4b67ec5ac1895e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:da328607ab6b200ee2937300fe54929a74b8912332e80102dceb311017413c0d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/aspnetcore@sha256:45e58c6459ec539dc052495e91f5f95fbf6d0b691cb250b6662e93bf650acde5
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:26e570d71545bba52a3e2e02bdc7fca23b4b5606912e9d590d3a7e2608c67934
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:e6b9f010f46f378a7505c119ca1e6600034f26275790fa02d3a9d34a8ced0726
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:dddefa0355d666d76441f7f35078dde8cd1a4d8712f6d2dce006bd7696d98cf8
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:77af200d14345c887bfad360bf191de3def6b45703d82ff41fb5d77f11ae1d83
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:a54c8935a7151a325fa99d4d09c3e4bca8065fdab6e8caebfecfb71d2f4087ea
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:3f5bdbdee61db7e5a57d635c6e78b85b643f23f1241232ad7adccbc350302fd5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:9032746cff71d95a08526b48594e2901084b1ce2d20d1bea9bbf47759857b4d6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:e0eb94bd2dff5821dbd4c5bc255b383e7075cd0691476d557b2a253da21521a6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:beab9eb78c4fbf966c1cca4246a0fc8545fb9b64b5d6458e295df0f22b5eba3f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:f02a49b80b4da46ee2d5beab2f2a3c3503fe46516a75801db51cd9a7deccf494