Sign inSign up
Centrifugo

dhi.io/centrifugo

Centrifugo 6.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

6-alpine-fips, 6-alpine3.24-fips, 6.9-alpine-fips, 6.9-alpine3.24-fips, 6.9.6-alpine-fips, 6.9.6-alpine3.24-fips

Index digest:

sha256:d7712a8ef5a8f1c1a7b87581f4a8e08679bc2977d3aa42f86f693de118867589

Manifest digest:

sha256:8baf9761a35226761daaacb82c986d348be81fd4fb665f79c3fe74efda23d338

Size

24.74 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/centrifugo:6-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/centrifugo:6-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/centrifugo@sha256:77728b1d3ad8abdfd1d059129e13ab610e0f4b90eeef65a09139722e4c8f0bc4
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/centrifugo@sha256:c96c6b4a1d3e1ec645bd99dcae349cec55fc4d817841cdf9dc17f3272912da4d
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/centrifugo@sha256:d287d08d792974df4a7442061ffcaefa1085a7c6d20b9b7782031482b2571ebc
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/centrifugo@sha256:a7f11305b9d52e634ffca3b92612259862ce356979d4cf739b74878fe9e322bf
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/centrifugo@sha256:189911eed403e04a4ea26e18b6349b94f3c847c9a0c17173f2df666604dc3036
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/centrifugo@sha256:e71c93ab265f57ce8d74df9aa476ad979b4f924bb3adb11223044288ced391e4
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/centrifugo@sha256:59b021ab945143b8e761590bfbb3d4f4da57130c680c4b8088f9a493693430e8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/centrifugo@sha256:8b0ebf0d0afafe9fa53f26535507c4d55b922050b5bdbf729ef694dbb42c8509
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/centrifugo@sha256:1e6d984b62d24a02e58d9941f966991a8b9abb8e93d151d5b21f9169ca135d55
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/centrifugo@sha256:aa25670e163d88565b46e743b9ce6c8be312ca47917f759e2d33ebed3e8bc0a6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/centrifugo@sha256:081b70f22c1fca21092c8d7c8a77b910f0cf9719fdd27a77ec2e098dc03ae415
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/centrifugo@sha256:50e4285b58b35bc1ffad6ba3b1b8d18a85f3096d9b23dd3aec7366e900ed24f4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/centrifugo@sha256:4481d8f7ce816843727da8e874f2761fefd6a49ca68909f027afc2754651cf23
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/centrifugo@sha256:9e10a7f418d1b61dd55889a97b376b7e67f42c8e53f04b97273c999acb96d0d6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/centrifugo@sha256:b3da1a8e1cba326ac8113002be48253c07fcb9f493fa661657694b16c743195a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/centrifugo@sha256:dd23841cfc76254463b856883acc808c00378737d0f6c6f566038314e24d7bb4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/centrifugo@sha256:a85a9698a521983f292d0c990ada989acf1756dce0eb216ca1f61e6877d7eb80