dhi.io/centrifugo
6-debian-fips, 6-debian13-fips, 6-fips, 6.9-debian-fips, 6.9-debian13-fips, 6.9-fips, 6.9.6-debian-fips, 6.9.6-debian13-fips, 6.9.6-fips
sha256:0edbbe911e368d8dfa2c1451144c057855d266e82d84b8d71c4ccac2e01db357
Manifest digest:sha256:042cf3bd1e1ec236005d83b8dbdf6dab40a29a0768b500fa3c6054b3f0a0b98f
Size
29.77 MB
Last pushed
6 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/centrifugo:6-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/centrifugo:6-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/centrifugo@sha256:9225b85d15ae6e1e356138d32f25b8a125f6b52838c4ad6892b7e8811cddaa8f |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/centrifugo@sha256:41c04432d1fe3c8d959fd19afc52815c4d6aa9efc912bf45ec6f26c724807273 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/centrifugo@sha256:ff3cc1d80dae708ba9c21fa470930fa552eeb6caaa68f0c8ecf6f3c1998ff6c4 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/centrifugo@sha256:dd682ee0435048602c29f3080661ce5b07df9d44ec284220d117e61712d9266d |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/centrifugo@sha256:6d3f18593553452fff485d770ca2ec4a3d221877993835fd4ceb3fecbc10f52d |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/centrifugo@sha256:0b28702055ffd45eda117b7d15999f598e13bbe50feb39f9ca158f9000b593f5 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/centrifugo@sha256:482fdf63f7ae09ed62d48aac4a88d44a6acdacc2c78194868449c9bb20d4206e |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/centrifugo@sha256:c7c9446f5e5a7fa05568db16ccaa7b885819796674f95b47d6e9e51b2bb6d952 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/centrifugo@sha256:ac211113e746f9e9be75c212b36bf2c2d9b98f24708cf3b812d5cf94de8aa166 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/centrifugo@sha256:7f86448de6c220d0aa64cf6c38e90e0330fb23879da53a46512bb9459ae49c1d |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/centrifugo@sha256:824e06491a0542a6c4fbb562be97f5d275e4bea006c2e5516b6cb4b9334592cd |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/centrifugo@sha256:20aacf5c749d8f588fa734d44ac80b00e2dbbb7b5d7a3a1ff2a428eab80a0223 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/centrifugo@sha256:95f87d2c4bc5a393916c4606f85949827357cb4385ff57317b2e14fa5a4f5b70 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/centrifugo@sha256:fdc5186b3faed8459490bac440916626f062c1cb7d32064ce36ed19b4f5fa852 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/centrifugo@sha256:c4dc5b222a83d61aec685ecb9e89e1271843d8ee0fdfc01eac6e6fbb23381a43 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/centrifugo@sha256:b445995a338e2363766927ceb7cdf3200bcfde21fe4e4fc2eda4c8c7c118109a |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/centrifugo@sha256:2886d6e36a3c77ecfe6ecc1e0eeaa608406388d636a78778306be96f6339cf36 |