dhi.io/falco
0-debian-fips, 0-debian13-fips, 0-fips, 0.44-debian-fips, 0.44-debian13-fips, 0.44-fips, 0.44.1-debian-fips, 0.44.1-debian13-fips, 0.44.1-fips
sha256:df8da79aa31198631dc215295abe83dcad78b843cc023324eb0603f31f701176
Manifest digest:sha256:22d446578881520ed17f835c5ad9a8b1350cd7fc3349ecd918f20d734486c15a
Size
24.04 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/falco:0-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/falco:0-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/falco@sha256:59c5fe2f02701c5516956f896ca54d971769dd9447849fddba6b03f4fb347937 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/falco@sha256:721438ec4a6c12ec493bf4310ca1020b8b2d3cbc645eddbc9153ead74f3f5856 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/falco@sha256:8bf8ecac349d151bbfafc1c2be9b648c3d179577f717ce0519223d46a5eedd47 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/falco@sha256:4eb5b6efa38d1c18b679fc09ab86dbd3a7be4878ae3320df7090a3743a6391e0 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/falco@sha256:2d1a51f01562d1eb8a0cd12383c59cffea3edb091f25904e8eb1da373b4e5b56 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/falco@sha256:c0070ccbcbaf435f1e5ae240f631cf5930c857ff6d89bff5daabc950942fc05c |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/falco@sha256:93994c242d04ce1736b1d1824c6605a9a3647a3aacc1968b71aa0d38420eaf7c |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/falco@sha256:44aa7b59f2d4881fac06b3acbda2654ecd56f8cae9258316307acdc1f4608314 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/falco@sha256:fdb8f6f004c9590135afddcd98b3b5573a619d920918780bff104c5d6e4d7569 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/falco@sha256:68d463295b0c897d417e3a4ca95e8f26b74f52271091c18c2f9399ecb8197441 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/falco@sha256:0c9d8ccb41acbab893019f87fb3a6fd1693bcfeef2ab1154c9503109c135fb5f |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/falco@sha256:9e461dfa2245ea1d2b2889d1973a172083738de3604d2ebe5de7a14a133bb22c |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/falco@sha256:7d27783d82665e6187ac60a505fb488516ec70ba5c37f5e9e2894ec3d2948179 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/falco@sha256:ebcb60d5a88418b75de19467dffb8564f72e225a8a2b5ce29726e8b0fa47eb5b |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/falco@sha256:948bf2edba93732ce80d0a5eeb4f580297d21c8eca4fd0e5d18b38157d9ff983 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/falco@sha256:281d74b6b2e6f97741ca05ce2be450275a904fda8e8ef9cccdaa713185fb590f |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/falco@sha256:061dcfa53194251833861220dbfab7455fefb0d1a3ad99c509b1fea52447c53f |