Sign inSign up
Etcd

dhi.io/etcd

etcd 3.7.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

3-alpine-fips, 3-alpine3.24-fips, 3.7-alpine-fips, 3.7-alpine3.24-fips, 3.7.1-alpine-fips, 3.7.1-alpine3.24-fips

Index digest:

sha256:18828ebfa1e427680a1224252e57711a9ed27db6b658b67729e69fb4176a3463

Manifest digest:

sha256:ad0bf35d6af08d4ada2b4cdca4836deeec678301011d77a53012f5035d4505c6

Size

23.18 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/etcd:3-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/etcd:3-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/etcd@sha256:3e0fb1937d50549c70fddb57144cca16d1e322bcc22947800da8544f922a74f5
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/etcd@sha256:9ccb2361438694b23288994d3d896b2df542b8cb6db35818a1f119611020e074
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/etcd@sha256:2c35b6aae351b0a53a84659fea94943226613c2b835a4989cb076cc313fb3256
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/etcd@sha256:e2a5ed923764a975fe71b0b79a39b85ab6bff2c0df5c43b0b210b4e6a8cd4deb
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/etcd@sha256:a291c94e84bff898c8a3ec4a952839ad0de251d4eb89ed103c49fc246c6bc459
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/etcd@sha256:d595498801d5539804d3c31198e852036db7e40d09742e22f373ddfb323da95f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/etcd@sha256:2cd6f094bff11b398a474def1ec38db96ff0f274209e368dde5b511d2731a239
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/etcd@sha256:590d5d7181e475b2cd4fce1836891249a9bbf83d33f673944203e9fad97cc931
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/etcd@sha256:6cf42c028dceffe831f7bbd3dc87d9d55846278fadacabf9f09a9e3fa8142f44
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/etcd@sha256:d15d0871cae618bccb580431699fab3bdb9e4cab228eaf79aa361a3512253e5b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/etcd@sha256:2b177c3a8e762873c0ed8957d2e29d29cbe788d408e3da25ea82662d89364684
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/etcd@sha256:bd2a722d1122079c27547b37091edb40e93d0f9fd998df35d5eba76c75ede787
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/etcd@sha256:91110fc40f5be00d77f859db0ff6020fea3ea0ebc638d5000678e09f9a6fcac4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/etcd@sha256:3f7a0f0f3c761f64bbea5d3563dfc0e4e6c343d03c976301a931eaadc1a72494
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/etcd@sha256:a282fb4e5990a1bc4ef3c35b0d06c33dc2e434bbb19e41335340b90c7432f321
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/etcd@sha256:c4b3837ea2a470dc4d302f1afee15ad3e7d0917ca7fd891dc07c2818dece35b9
SPDX SBOMhttps://spdx.dev/Documentdhi.io/etcd@sha256:b524157e5863c78ab7501cf9f0775b5667182ce31f2abfc56374ab62183a3057