Sign inSign up
Calico Typha

dhi.io/calico-typha

Calico Typha 3.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips, 3-debian13-fips, 3-fips, 3.32-debian-fips, 3.32-debian13-fips, 3.32-fips, 3.32.2-debian-fips, 3.32.2-debian13-fips, 3.32.2-fips, v3.32.2-fips

Index digest:

sha256:e80a95a1246cbee729cffe32d466468022628f05fbaecf4a32c84936925f556c

Manifest digest:

sha256:d002b5a8c8e87897e0203eff6fc26569d1a2756aafac74874ccac7fdd9649f40

Size

25.79 MB

Last pushed

7 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/calico-typha:3-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/calico-typha:3-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/calico-typha@sha256:5e14003b53a7d8ac08980fa2b504542eba2692a4376527b6a40ac00b7b47f814
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/calico-typha@sha256:4d124353706c8f7b58b0b9969dc51f34bc2f975d53111682e2534448a548eb67
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/calico-typha@sha256:a1205c7f218e9f1d37f45edcdd38b6afd027bb1c7e658c04af685e14ab6b7cb8
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/calico-typha@sha256:fbd959da7627fca8d25d60217d7c0f7806e843082a8aa56956711ba8d9b92456
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/calico-typha@sha256:68231aba9b16ab11ad977c4a31418c5f980738665b7cbbb1fbf80ac19cb36dbf
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/calico-typha@sha256:fd13684ed8603e1f99553c8b876155b6bc2c206728f00961d16e47bdae6f2741
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/calico-typha@sha256:996c702c73d6fefa85c88235a91d6dd93669b537e685265efd12f6a3bdf927e2
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/calico-typha@sha256:74352182edc77b64a8fe0eb633d8b4d7533e96b816d70f2d772ce2a07261eb31
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/calico-typha@sha256:86222bdb9f4fea4cab22d04bcf3d3a1cfdc09286e91372f97b5b160830051b45
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/calico-typha@sha256:8ae7efb3863c97217068b10ec0df5d009a2a244a0365191511310000eb2ab47b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/calico-typha@sha256:e76033ce6225ac5e77e18ee6386711fbd40f1f78789632d03afcddc1a1c99a20
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/calico-typha@sha256:30e612fa45e702a9c3eff710bbf0e45054b8e47013fe7ca579a6f6f94cbd6558
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/calico-typha@sha256:cb338d47708f9b4393fd606dc59dc485f1772e08650a6097c314ea0c3dd6015d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/calico-typha@sha256:13490003eabdf69674b29b3fe7d16a4e5878a1760bb341b112310614ff21b6e2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/calico-typha@sha256:366889689ae2c15f1c4d56a94ab63a06f18de2fa3f14408459ca8a0a360a8a5d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/calico-typha@sha256:f5abc731b7548e04e76dff056a141dbf16f9934b00d998ab8094ab346dbd873e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/calico-typha@sha256:2a480f3338a3f9c9debcf8fe6dcc96a4ed6a712d71725a55166aab3d401b8b23