dhi.io/calico-typha
3-debian-fips, 3-debian13-fips, 3-fips, 3.32-debian-fips, 3.32-debian13-fips, 3.32-fips, 3.32.2-debian-fips, 3.32.2-debian13-fips, 3.32.2-fips, v3.32.2-fips
sha256:e80a95a1246cbee729cffe32d466468022628f05fbaecf4a32c84936925f556c
Manifest digest:sha256:d002b5a8c8e87897e0203eff6fc26569d1a2756aafac74874ccac7fdd9649f40
Size
25.79 MB
Last pushed
7 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/calico-typha:3-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/calico-typha:3-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/calico-typha@sha256:5e14003b53a7d8ac08980fa2b504542eba2692a4376527b6a40ac00b7b47f814 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/calico-typha@sha256:4d124353706c8f7b58b0b9969dc51f34bc2f975d53111682e2534448a548eb67 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/calico-typha@sha256:a1205c7f218e9f1d37f45edcdd38b6afd027bb1c7e658c04af685e14ab6b7cb8 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/calico-typha@sha256:fbd959da7627fca8d25d60217d7c0f7806e843082a8aa56956711ba8d9b92456 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/calico-typha@sha256:68231aba9b16ab11ad977c4a31418c5f980738665b7cbbb1fbf80ac19cb36dbf |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/calico-typha@sha256:fd13684ed8603e1f99553c8b876155b6bc2c206728f00961d16e47bdae6f2741 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/calico-typha@sha256:996c702c73d6fefa85c88235a91d6dd93669b537e685265efd12f6a3bdf927e2 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/calico-typha@sha256:74352182edc77b64a8fe0eb633d8b4d7533e96b816d70f2d772ce2a07261eb31 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/calico-typha@sha256:86222bdb9f4fea4cab22d04bcf3d3a1cfdc09286e91372f97b5b160830051b45 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/calico-typha@sha256:8ae7efb3863c97217068b10ec0df5d009a2a244a0365191511310000eb2ab47b |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/calico-typha@sha256:e76033ce6225ac5e77e18ee6386711fbd40f1f78789632d03afcddc1a1c99a20 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/calico-typha@sha256:30e612fa45e702a9c3eff710bbf0e45054b8e47013fe7ca579a6f6f94cbd6558 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/calico-typha@sha256:cb338d47708f9b4393fd606dc59dc485f1772e08650a6097c314ea0c3dd6015d |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/calico-typha@sha256:13490003eabdf69674b29b3fe7d16a4e5878a1760bb341b112310614ff21b6e2 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/calico-typha@sha256:366889689ae2c15f1c4d56a94ab63a06f18de2fa3f14408459ca8a0a360a8a5d |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/calico-typha@sha256:f5abc731b7548e04e76dff056a141dbf16f9934b00d998ab8094ab346dbd873e |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/calico-typha@sha256:2a480f3338a3f9c9debcf8fe6dcc96a4ed6a712d71725a55166aab3d401b8b23 |