Sign inSign up
Calico API Server

dhi.io/calico-apiserver

Calico API Server 3.x (dev)

CIS
linux/amd64
debian 13
Tags:

3-debian-dev, 3-debian13-dev, 3-dev, 3.32-debian-dev, 3.32-debian13-dev, 3.32-dev, 3.32.2-debian-dev, 3.32.2-debian13-dev, 3.32.2-dev

Index digest:

sha256:4f69d05e51e59b6bbaf5c148b99f6a5c96db957495a0418d04d039266f03e706

Manifest digest:

sha256:dbd129c144e9db193a72fc50f9be1b25cd4f05d029a6e2d93e3ce7a10dc35e2a

Size

65.99 MB

Last pushed

18 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/calico-apiserver:3-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/calico-apiserver:3-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/calico-apiserver@sha256:e980355d1f924c520e2c35e3c20f3b578cf4b56be1fa25ba76e5390810a254b7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/calico-apiserver@sha256:8c0926009f5b908e982a7cc75aadb0635f4fe7738fd026ae4ed8ba11f3b1c36e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/calico-apiserver@sha256:da25a0b72d330f29e61fecfc9007a1180eead9867f2811c83c3e3c753d0bd232
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/calico-apiserver@sha256:0cd21587bb11d854b372325ee02f6a29b7d3ba189d21a52ed169f8d355c4992b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/calico-apiserver@sha256:8b458c75bb9e2277b74f9d5a4b8e20620ae63e39e5fe9161fa89811a55e4d5ee
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/calico-apiserver@sha256:97884c1ed8c43d8832359092ec6977595b0ce5be0576c561128a382d2870211b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/calico-apiserver@sha256:2c57d6e1ce8484500624b0de7b5b24ecc76498893b2a364dfce226f4e269b3ec
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/calico-apiserver@sha256:34ac7a997c309d64146797dabe7ac2e1691280df1dac74c1ec8f914b1afa4549
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/calico-apiserver@sha256:5272789a63b1f5fe93f47a1400f20306f03841c932cd2bea9581ac6b2497c3a8
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/calico-apiserver@sha256:5d5ed4481ab2f1a8af09c9aad779bf195b1d58454228ccb9636b628e69bfc4b2
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/calico-apiserver@sha256:8eb5045506215d9fc2770af4984a7bf91856846ad5d0907364918883b98409f4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/calico-apiserver@sha256:a2478246f53a26889d2aedd4e858ddb1199601dccd587950a92264314cc5cdae
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/calico-apiserver@sha256:5214d6d1cb1d0af640501165a66b113d428d2ed91d0186c0c13885a8919be109
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/calico-apiserver@sha256:bc59c62e6625d57c0fbafb3136b8d7dd44eb52b2e862b2fde45a6cdfe19be11f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/calico-apiserver@sha256:b86befb6efc44058732cd8f0274c46fe6f730b9b1b4be4fb964ce2a50816e809