Sign inSign up
KEDA

dhi.io/keda

KEDA 2.20.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

2-debian-fips-dev, 2-debian13-fips-dev, 2-fips-dev, 2.20-debian-fips-dev, 2.20-debian13-fips-dev, 2.20-fips-dev, 2.20.2-debian-fips-dev, 2.20.2-debian13-fips-dev, 2.20.2-fips-dev

Index digest:

sha256:cefdcc16cb076bb56fb5a638a11c0305b4185bf5fc17b24e07cffe8773c590f3

Manifest digest:

sha256:4518e6b2a94df4590a2015e8548a6d72071dbb955f9f19e56ac66d58f9b69c32

Size

103.01 MB

Last pushed

15 hours ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/keda:2-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/keda:2-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/keda@sha256:3b68afff0000386b08ac3a69f488eba8678c0463679b84d33a3182a835136f53
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/keda@sha256:613894d7eb8e21633e043bc9f3b0a9eacb6a8ab0ea2e370a896af9d422b3fdff
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/keda@sha256:ac4cde3796280141ca94b54b943708672a900b26399c692e24dc68218a876e41
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/keda@sha256:8d2c33c4bde4049ffe00359d25dfae3fbde938cff4fab84a9487c59a196cdd34
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/keda@sha256:1fa1c70f9581aec9b0f6061ed48426fe138a8c8ff72a6bfb2edd6ecd41e1b82c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/keda@sha256:4ddf27c57fad340a2cf5d11d3ffb365dc2c59399f59038a3d5af1ea23d6be077
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/keda@sha256:8365c3134b6e57757617344c8accda7a3fc5abbab8e2e7bde869cf598fbd2bb1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/keda@sha256:551b18062f86d06dbff7dfb709ac855468689d589d6e92b709faa9d4cd430a9b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/keda@sha256:a670e77532d2b0e73e48ef4d670c247e020aaa15f494aa2831b5ef1315a0f22d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/keda@sha256:3f1478f262af2ed2180bb380e2dbb7d96cbb91383741b6a33047a890391cc123
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/keda@sha256:8c214440e77168c4a9080ec91d70850eced9d28516ea6f1718dd7e896164eff3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/keda@sha256:3da7837fc5c666d6ca72623fba897e1666c96cc1b68a10d6bb929070f69dcb1a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/keda@sha256:adb2ad859937d35a9f1929736f00eca7934014ee03de8dc9e3c0d509ee78cd91
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/keda@sha256:b75a721879f658b09f875f3f0eef31103e0bea9a36edfac334c63e942d6e71d3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/keda@sha256:840374daf6ace5a2033e49006c7af7587e51ae9a6273192e8c58c54cbd04829a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/keda@sha256:cc944e34e212fd84280753a2da253433992812b4b34edb96836e417544f0ac57
SPDX SBOMhttps://spdx.dev/Documentdhi.io/keda@sha256:a67488bd3e1e30da68a4266307fb28dc5d39c981052ff06dbf07a93cd05ce48c