Sign inSign up
Calico Node

dhi.io/calico-node

Calico Node 3.32.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.32-debian-fips-dev, 3.32-debian13-fips-dev, 3.32-fips-dev, 3.32.2-debian-fips-dev, 3.32.2-debian13-fips-dev, 3.32.2-fips-dev

Index digest:

sha256:1c13298e9544c3efac57e510d4c8fa6bf763318f03b7f509711e240019400827

Manifest digest:

sha256:ce69b0351d7953528a711b0b82805be8885e6ddc7ae051c505b91abaa58f6ab3

Size

95.56 MB

Last pushed

23 hours ago

Vulnerabilities

0
1
0
4
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/calico-node:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/calico-node:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/calico-node@sha256:8d96e56e06bdbdaf2edcf3e47881bfabb3325dd9b6869368712aa44134dfe41d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/calico-node@sha256:2effe2f903604ef963c59e6ec8ce4a2d3468a198ffe785c2d6f67813f913580d
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/calico-node@sha256:ea3c4cdeacee8e15becf79bf3dec89f6fe9871efaf7bba878eca483a5896bfae
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/calico-node@sha256:8322625274753605364466badf8dac50ca05521d1907a9429232a686e477ac2a
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/calico-node@sha256:7e974d429b285d0d7b2a6ae4c08916c4444c55f97ba66e89462c6f50452a3b67
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/calico-node@sha256:0380d7e48d9c72cd67769863f4c75c1261772fe1032d361d955ad40c2500da19
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/calico-node@sha256:bee6874fb871b5cfd5322b34d304bf43badfca1af0d50c7448fa3f03f3b1706a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/calico-node@sha256:df30df1f06181bb7fa85585a9174d6f3749c207b8814c938f93f87764c474d42
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/calico-node@sha256:511e6e30a0ede0e77cc6ab158694238b9e2b44863dade632820ab99026eb69cb
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/calico-node@sha256:af81732ade55658685f1ef996fb16cfbe7afc39d5756fa7bb4bba49c3df0ab90
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/calico-node@sha256:50a89a6ef31bac75c429c1437bb111b5338cb0dca4006c5c7312030bb4520b77
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/calico-node@sha256:06da9b4143f665611ae170bce22fc3d5c3ae89f2c4e47aebadf684685281198b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/calico-node@sha256:9331bdd9e9619523b253842c2cd08169bfe8af4b7d30b406cf8d0c600b99d98d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/calico-node@sha256:a705e1dfc2a4d023872bd973038674c97dc6ee81e45cb75f314deb108beac67a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/calico-node@sha256:d4fc53e4ca754f3828454d1abf0586f23db13c0ba8c3e233a6b46f97786a9637
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/calico-node@sha256:3985a8b2e5ba73575cab827693fecab224828d5b5824823d13eb2adfd63d2522
SPDX SBOMhttps://spdx.dev/Documentdhi.io/calico-node@sha256:45c05c19a1578be3003e8ce695271dd7d761dc94acfc5dd4c0b5fbd3b3c2ea65