Sign inSign up
NetBox

dhi.io/netbox

NetBox 4.x

CIS
linux/amd64
debian 13
Tags:

4, 4-debian, 4-debian13, 4.7, 4.7-debian, 4.7-debian13, 4.7.1, 4.7.1-debian, 4.7.1-debian13

Index digest:

sha256:d98a06af01044ff64d124255edccbd642f60cf81b6e1d883383a71af1f00acff

Manifest digest:

sha256:2750243e7307d1af4da1cd84f6db3a99636518f8ee4d20a4eec75d3e5c0c822a

Size

120.03 MB

Last pushed

6 hours ago

Vulnerabilities

0
0
3
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/netbox:4

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/netbox:4 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/netbox@sha256:e70bee2f341e9298876904f24e8bb381765a43ee6778bee513e6b3f3cc27ba95
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/netbox@sha256:3dd3c99eb067cbc10715bef3f41b17dffe044a5027877b6fa7212ac54d8e72ed
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/netbox@sha256:b2ad2c61fdf68f5472fd6a0f7f91f726ada5b1463e0625d6326eaebe0c881bde
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/netbox@sha256:ea6c19dbe4d7588dddea80220fbddc629c0fdc6ee19dd3d29b741b48be49ddd2
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/netbox@sha256:e79fb05d2a7cd5817d65106e1a9da9199edabe364c226e28a6bf1fbc0a84aa35
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/netbox@sha256:99551063f9713baf92d746b405b051219e97f521cccd56307040459e6be7cb0f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/netbox@sha256:b9a4624ac2ffc666fa718fc1a33f8018cda2fefdf1c266ce98399e90a574ba54
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/netbox@sha256:10bf982c7d344b8b9b878e5cd1515ca6709363617993c687cb203d67973859a1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/netbox@sha256:45cea1e2c4befc8a87b07cf7949b9e9c45ea9d2345784a9efd6db9f112455c64
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/netbox@sha256:84fee840799f6f71ee0e785cf6e078f8b521b72b1eee24f2e52e81e0f113d4ba
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/netbox@sha256:609eb88b8bdce128abd1b98a09b6785eff36c6bca6a4addb654907d75dee6a53
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/netbox@sha256:0f1853ded228330271695889b3d17e172febedcfc578ea0cb7b06e5001d9a8b5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/netbox@sha256:602b1591b549f40957e5668e136a2ee07a68cd36206c4a3ee0ad4a9445ed4531
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/netbox@sha256:e8213f9e00c13c40c7a228e3fbfe0322f53ad2c4e054e732dfa6d34b6bfb5a12
SPDX SBOMhttps://spdx.dev/Documentdhi.io/netbox@sha256:f6036cd4a14793182a58cc0aa11410883da46941c3b8c61cafa3bf9cb70be288