Sign inSign up
NetBox

dhi.io/netbox

NetBox 4.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

4-debian-fips, 4-debian13-fips, 4-fips, 4.7-debian-fips, 4.7-debian13-fips, 4.7-fips, 4.7.0-debian-fips, 4.7.0-debian13-fips, 4.7.0-fips

Index digest:

sha256:65a1ac4c87fd723aa9f33e73b02d47a81e235ee7991332ce7271c5424ba83a03

Manifest digest:

sha256:b7d5959c21bf2bddda01cc23463682041a82789e84900bc6f97310b0c3b1bb84

Size

120.55 MB

Last pushed

16 hours ago

Vulnerabilities

0
0
3
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/netbox:4-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/netbox:4-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/netbox@sha256:98704fdb1a338d4800b80b9287b1c45280caf0b8fc1177d793eeb3ad7d399266
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/netbox@sha256:92062d55f9196bbe56ded0389b5527af56ae236c0b4480ecd2485dd464b5b852
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/netbox@sha256:eb75e8e8da806963e03728a0f2cfb49161efc2ac8b986a1901b2e7f33ab8b4aa
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/netbox@sha256:0fb43475415e630bd0f40b7f16ca2618e770b753bdc3dd0f8ed003658654bb1f
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/netbox@sha256:47a0c8620ad71f82b594e10bb941b41260b2a876e7a58d59981cfc7b68bd0e1c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/netbox@sha256:0aaf45d956153256246e181d78d24b9d53e5925199dccd5bddab9008e7a9e5b3
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/netbox@sha256:ba2e1a825048fbbaf2e7781892214fe8ff8f9e0c50a673b89a68bfac74e4ee97
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/netbox@sha256:a8ee20d6c72de677aa633157d5aa379b72c0484bdca243387ee7f382889139ff
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/netbox@sha256:4116a3189f7e07f29fbb6bcc8019face56e7fb5ad1494990c709f186b2ab45af
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/netbox@sha256:ae27a38f47e1ac78a8249707fd70c6e892d56bee92f39fbc566cb38c337b006e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/netbox@sha256:bfc93d08669deb237fab7ece7f9d14bcf9bb33d728c58affa79e6d88b1ab5184
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/netbox@sha256:d6743862cb26a0696bdd4c843ef7994b1d796ff94b4d353bd0d4a4bca11301b6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/netbox@sha256:f82541f1af498678adb7c0bc78c8853b403e1dcef7aa28136970ca2f0f3139ee
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/netbox@sha256:1c21d1330719c427415663ffd94ab4b9be6d267f9f74b6ba7a1addd91f3fb88e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/netbox@sha256:0593f907262339592fbae442939a59b162e13f79d929669b0e7dcf813b381bb3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/netbox@sha256:66f4581cc4694604810d17a67c826b8d4bcfba408e88204a301f5e25c6ea051a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/netbox@sha256:78ca9f2c679df775b69111bd51559d28176c19e7ebca5af8b5e6592888c418d5