Sign inSign up
Etcd

dhi.io/etcd

etcd 3.7.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.7-debian-fips-dev, 3.7-debian13-fips-dev, 3.7-fips-dev, 3.7.1-debian-fips-dev, 3.7.1-debian13-fips-dev, 3.7.1-fips-dev

Index digest:

sha256:71f00781187ef2b5d19b7b11635eea7600630985aaf2a4d65b3a41f673d5c263

Manifest digest:

sha256:7d29690bdada7fb7a399defe832ffc24c655eae2edf3fb5c1541dd3340b199fb

Size

61.15 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/etcd:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/etcd:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/etcd@sha256:4b9176f5b542ba4ada72d22ee7b0cef8ffe59a903ba791200ca6da838d41f22f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/etcd@sha256:336a8a6af158bd3677847855b9b62ab6df3a63feb97ffdf76a87d188bbcb931b
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/etcd@sha256:6233984fcb3d149a1c203ce21a3b9d0b9214a02a2d278c99b31dcd92a7e6d848
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/etcd@sha256:1324081509d3952e1dff395aadc255e44fbd6553b2e054db5577523969724ac8
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/etcd@sha256:f85db9508daf637046b4d9d46d61384d80521b639ba691371ac698963e9887fe
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/etcd@sha256:1f2d8f14fd8ce87a0bdb1a4f3b60326a7aa6a1b830284fa7aa7de154ef4778cc
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/etcd@sha256:5b029b7da2733fb0837bc713131c9f1d35e7bce09322f02e3fe5dfbf3b6cad99
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/etcd@sha256:a88e6a61f902d58e97ad0fb596a1a452af8c09e9d1d18fd6e8a56b89b827f070
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/etcd@sha256:c65da387156c60e94a0a5acdb6717d1018de64be5577419d440ee2835d96b67d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/etcd@sha256:b15da1561be29eeb2df22eacb528089947dbe5461b33e3ffe34e4d99a4f087a4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/etcd@sha256:2c206ab3ee02eb62c873bf94e74d0973d3ad6a8969e7481d4573325b9fdeb4d8
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/etcd@sha256:1120f0886a2932ef123cfa3d04867c82e13961d989e84ef937d7502de84b2681
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/etcd@sha256:2076870371a3bfc00e3674f7f8991737b36021e450ca9e82b832f73e76bb4777
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/etcd@sha256:f2a9bd76699310eb268a1b0be1a5c33d002af891dcacc03354887a2f53d56d5b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/etcd@sha256:f3b983ba10cb2ea731f031a5e450ddb41325db359b891886536bea07a1fc21bc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/etcd@sha256:682fe35163e0507824f31a645c37e14dc9a0f2af81da506f965a82faf2192d68
SPDX SBOMhttps://spdx.dev/Documentdhi.io/etcd@sha256:051f2c722fd59b1749cfdf2dda8c82e925554228c99eba48cf9b96dca3149f26