Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 9.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

9-debian-fips-dev, 9-debian13-fips-dev, 9-fips-dev, 9.0-debian-fips-dev, 9.0-debian13-fips-dev, 9.0-fips-dev, 9.0.20-debian-fips-dev, 9.0.20-debian13-fips-dev, 9.0.20-fips-dev

Index digest:

sha256:b5d9f16f85a3d2584fc1b3a28b9c8891a575b09f688e38922bda67d31279c362

Manifest digest:

sha256:45380660489a401d99b8c6670f1f8a3c29ff0dc429d0cfc121396aebc3fd7ddd

Size

75.31 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
2
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:9-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:9-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:500aeb4164136ee3d6167989f4829bc5523d98c51fcafd7936a59891dac78781
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:661a566a2d217b234b730ab55888f8c62989a294937a035709759efec3849049
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:93faf2ab46355dc9f1aad56de5a06c9ad4f2dd6ed3d14d27bd9d99c2e0778aca
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:9eeb0537704c1f04646a372f7c84095bd252e08b1d6fcc79e8a7edc435313ae9
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:a72db38eb1b19f5ce96dd30ae3f7e6bde0666334297180cd9ea313d298c4de1c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:6e17d45b97d0761ac64facbddf7949e18dbbc420159280439223c5b79b66d747
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/aspnetcore@sha256:3ded4ccdfdd1f6d93a3ee158541bdc3cbfc4dfd1aaad0ff494a3bbbd0c163af1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:db598ffb1845049ae85c0f142be0fa0abeae4ec7c39e411c3ec24b95d21d2f92
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:cb5f3f51c65d2255ead530eee3d637eb8c3d041094d266080ecf346625e04334
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:e71ed82f0819ee618690fb759f6f19119019a479f5bd52061a5f2a7bc68a1871
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:fe78f1dbef1314f0463fd365b82e234c80f4e0e2d008219aded40699cd4bbe86
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:adf138c8662f26cb64e2eba4e1c90d49664e431999fdb8cca5f7b6ca25086c8c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:a544de2aa3c4778e81484cf4e74228c191e1eed7cd589051ae65b949234607eb
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:853d531a39616f3990ed95bb3f0343ef33544188ff0cb10624d60e76a6f4a5c0
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:00f5781295fd3692e6cdbac3addbd7c4a9bd38e3b00b4c36fcb054773cc015ee
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:7c976b6e1ed16aa6a3f3465e959adc8369cd32c3508da1f5f0f09473bd1b2b48
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:97805a45d6af75b0e2afc7600e1aa6fc78b68d78e47c7d6ebcc5ae4c4c856e9b