Sign inSign up
K8s Device Plugin

dhi.io/k8s-device-plugin

K8s Device Plugin 0.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

0-debian-fips, 0-debian13-fips, 0-fips, 0.20-debian-fips, 0.20-debian13-fips, 0.20-fips, 0.20.1-debian-fips, 0.20.1-debian13-fips, 0.20.1-fips

Index digest:

sha256:64fc33ef02103e9bd59dd27bad7f3d48e96bd8e7605dd29eaf13280acff3b367

Manifest digest:

sha256:04e1384fa059330d465629f1956925f79c705f5d577147932ce91c2bf33f6af0

Size

44.44 MB

Last pushed

23 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/k8s-device-plugin:0-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/k8s-device-plugin:0-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/k8s-device-plugin@sha256:e7086d91c62a9520cba38d401fbf3bbd1e224d3c6e4a5554c01421536f9b8d08
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/k8s-device-plugin@sha256:b9a7433dd93f292500c62771e73cf96ba21370028750232f78a76caebb41dbaf
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/k8s-device-plugin@sha256:699c8fe93100a7f42cf50fcd7ea91e8d7f64915ec664c0c1bf56af344622bfba
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/k8s-device-plugin@sha256:10b8166d718ce0a4ddbe719f101d34f30b83b2ee39b7b9f56f52326150d432fe
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/k8s-device-plugin@sha256:c7472e98c4a2a8014679135deb4eb047e7a29acd59af17fa0b3fa0bf6a492af5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/k8s-device-plugin@sha256:3387dc295620c9c012fa6b417e322dbbc79a24452bad00d179e837cdfff39eed
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/k8s-device-plugin@sha256:5613f6476fb56161bb535a08ee2d9267a46d39353502ca47088a424f0b339721
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/k8s-device-plugin@sha256:f4a98659c9c0e3b5a0f492d22cc353d541a32be79001b5147a2779758dd1cef1
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/k8s-device-plugin@sha256:4834fadd9c541f55ffa114b2d430142ccf934fea2eb96f2acbf65e1fc3b85b93
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/k8s-device-plugin@sha256:ebbe2c028f1e69ea353fcf93fed3d7541d6d717b3b295f4ef9cabb590378ce8d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/k8s-device-plugin@sha256:41da913f05480d8ea41197d69274e43e7760bb639f912117b0b550c5aff7f130
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/k8s-device-plugin@sha256:1a860f1f889593adb4d089ce8eb73730517399404228db48405db36d547025c3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/k8s-device-plugin@sha256:218ad37b06cc3bb0d0a57a2d295d8c1eeab3db3fafd6024dad236d3f818a63e5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/k8s-device-plugin@sha256:bc4ac917bff65d8518a4b7cdc09045847713bfaffaef06b56e5006b44d6ca7aa
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/k8s-device-plugin@sha256:a868dbdf8e2849b9f1df87407fd396f416312db92c5d6f92ec0ba5c956475f28
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/k8s-device-plugin@sha256:2a304b9ad9bb57be988c7887e2d7de3ed4d32c834d547c4726e31a435cc218c1
SPDX SBOMhttps://spdx.dev/Documentdhi.io/k8s-device-plugin@sha256:5a491349bc10d870a6de66292ec47a95feb36dc5e0279c69fa3f585c1dc3a37d