Sign inSign up
NetBox

dhi.io/netbox

NetBox 4.x

CIS
linux/amd64
debian 13
Tags:

4, 4-debian, 4-debian13, 4.7, 4.7-debian, 4.7-debian13, 4.7.0, 4.7.0-debian, 4.7.0-debian13

Index digest:

sha256:976796ea2038cbf9e38f444d2d1ef90c0d6e15d36168cbaaf1617ad375a38de1

Manifest digest:

sha256:6250fa7ef2a1eea92ddf0477be281aa3ae02d64683580ef0567826b34a830697

Size

119.79 MB

Last pushed

17 hours ago

Vulnerabilities

0
0
3
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/netbox:4

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/netbox:4 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/netbox@sha256:a066d1285bf18fc55cfaa1fe19b7457d8c5246531dc9c1b9eef625b70950a155
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/netbox@sha256:f7140909af35591c4a1e6035284daf520cdb651351e65bacd39d3653417b8bc3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/netbox@sha256:ebd4b8d02dc0ff3b26c584f00823d755b6bd20c9503792787fb73b9d3e34ea7f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/netbox@sha256:a4a5ec58346b80c671844e7a481a2866f8d234e29409ae9e49cf3cae2175ec00
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/netbox@sha256:0e87a882aaf77b8412063fbc1169c6088c327245b8e6a36fec7bba78ec4af34e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/netbox@sha256:e1bfcc4c282780f109480661bbf29623dc24f731e3d5c71901c931b415645cb5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/netbox@sha256:b3dcf95e1d50d44c5f3da7faee48503c4e548aebc51097da0e7074f252384514
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/netbox@sha256:5fe9c2085d0fb2de0778ccb52f0b7ad67cda7dc4160dbb2ff1e549cee448de35
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/netbox@sha256:9dc4e36957ba85df79cfee33b7d28ea6d7d0f1d69dc6804845ac04f97924928b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/netbox@sha256:e87d7d8a02c1bddeeb71a80e1aabab457da08ebc37ce5ba99dd3e289a5d51d5d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/netbox@sha256:0c086e7b7ca5034ca5e50438bc7a07fbc79bf60bb362a9d7156669d003157df0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/netbox@sha256:2a5c80c60b67d4ae05c7a05b5bbea9398246ae737a4ca47849aae0479d138f94
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/netbox@sha256:db63f95ca1f00749c2082a9cc54cc2b2089400077be2ea3c3b219850a633ab8a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/netbox@sha256:f9c15c735d3c087ed91b0222b4f05e1eb65c189fda8fc9754c1c6b28e5e12f8d