Sign inSign up
NetBox

dhi.io/netbox

NetBox 4.x (dev)

CIS
linux/amd64
debian 13
Tags:

4-debian-dev, 4-debian13-dev, 4-dev, 4.7-debian-dev, 4.7-debian13-dev, 4.7-dev, 4.7.1-debian-dev, 4.7.1-debian13-dev, 4.7.1-dev

Index digest:

sha256:de72a8dc506a52b3367580da05189d5c67e2c6f57e370a38a4afab1bafd43e65

Manifest digest:

sha256:ba510e59212674d355fbab76ad0ba27da8789ea1ae5d20781126234e2b3a2351

Size

128.28 MB

Last pushed

1 day ago

Vulnerabilities

0
0
4
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/netbox:4-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/netbox:4-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/netbox@sha256:39f7a7c98d4492f217dc7fc75e8ecce219f30d4e04499f855fecc0871b67b70e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/netbox@sha256:bfd82ec052fd423d8cea52832f05c9b8791ba87cb1784e64e05363abdd75d4d2
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/netbox@sha256:bbf136dee090c92cd6ca9cc450915ecc9b608dc7be735b8229fead534eb3855d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/netbox@sha256:de2e25d754aa4df36d31bf67000b192d7e8147a9985a965b13734095071bbb00
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/netbox@sha256:a1d3c20798f6af6224411ded6d4f41810f1a81ccf5a4e7e879c817c57e46c2f2
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/netbox@sha256:43dd0d87983a89f9863027ddcf258fe05a04544d154c3c2005935827085432dc
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/netbox@sha256:cebb1f8e39967e90c3f47b5c9b0989ef45ba848c85b40cabdadc2090c2ea0e67
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/netbox@sha256:11235e38aff1691b1ea9dcc4315eed9a2291c2f8ba23e93dd073e383bf6096c1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/netbox@sha256:c813284029b20ade6e41ad6522b5eea9627e8e44b49426e6e0e4a1f192cf0b16
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/netbox@sha256:c8985c139665a20013ba42455f654515e4732f5b497e454f668914f52f38b4a2
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/netbox@sha256:a7fd2ce9158892864d2cb90e111ad1f8f2cf307b27ece4f8a57815a3209cf4c2
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/netbox@sha256:d892047f97aedba9e6d4062a79eddb22a524b8092deb15245915913618f28873
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/netbox@sha256:f07176a98782b444f4ba843b63ed16b0101584ad20133cb18110eae71215d83d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/netbox@sha256:b585c222d068eb85b980bb6afceae1aedb0df719b4312534ceb77aa9944533d3
SPDX SBOMhttps://spdx.dev/Documentdhi.io/netbox@sha256:a2a8ec23f42b9b428ebc798e15b64d052e3373fe417fe6601a55cdf9a5f991ec