Sign inSign up
Calico API Server

dhi.io/calico-apiserver

Calico API Server 3.x (dev)

CIS
linux/amd64
debian 13
Tags:

3-debian-dev, 3-debian13-dev, 3-dev, 3.32-debian-dev, 3.32-debian13-dev, 3.32-dev, 3.32.2-debian-dev, 3.32.2-debian13-dev, 3.32.2-dev

Index digest:

sha256:8d1c41ac6f650080a019dcf9be481fa5775e4a22c3a830e21320d0e9deb6f54c

Manifest digest:

sha256:00bf813d42ca023adc9199084bfab3b0b5026f2afe11052c5de005ca18989996

Size

65.67 MB

Last pushed

8 hours ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/calico-apiserver:3-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/calico-apiserver:3-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/calico-apiserver@sha256:28a11e296cc0eca4959088452113c3bd474ef6432d39f0da2af880c892203b08
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/calico-apiserver@sha256:f66cbe6d2016f5646605e3b84ea22c68714815755bc1454778e64280aaa50a9e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/calico-apiserver@sha256:15a22b85db6906195fd6599f7dfe1d3734cec4f65a270225f23ebfccafce8943
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/calico-apiserver@sha256:9b90c4d7830bfc65773969556a71e3b4a178f9f6f552677edb7e13533ab23e03
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/calico-apiserver@sha256:cbbc6f383f433498353fd6de2fc3fb5611abce7cefb53638effcf21c1728b332
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/calico-apiserver@sha256:53ba8b3d8a1819b51d408276a527ef78091d0bc864c02b59790fd1c0827d9e1b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/calico-apiserver@sha256:b72196b8dbfee6128167a0458e8085b17c087a066c78202a98c1639c52b2da4a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/calico-apiserver@sha256:f802eb692f94b0da2ffbd3fda44c802a1c04378bcee1403124f9094e07ebaa50
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/calico-apiserver@sha256:e4d193e004a42fcdb5e0b2fecf1fcbf0c6246d1768a454e688c685b5735e9112
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/calico-apiserver@sha256:658a8e43a4f02359eb1d2a748c4463ac7f22c11d23eadc32eb62b36e3e89a4c3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/calico-apiserver@sha256:330f55b8daae49268dc188966a1aac53cb5d95dff468692e50cd8f725f65c6e2
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/calico-apiserver@sha256:3dda436e3be421f1bf69f6dc04934b3b8d5cd5356aef85575ea5981177054724
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/calico-apiserver@sha256:17e08a8d0f280523a15ae09a4534f9862bd35bcb7904ae33406a9f47065e865a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/calico-apiserver@sha256:3cce11439c405bdc739020f3318b02443101f6949a049ca70420b69be20b06de
SPDX SBOMhttps://spdx.dev/Documentdhi.io/calico-apiserver@sha256:0172ae868d1ddebdb6e12d9e0bae3a2dc335461e9836b1894b45566698c30952