Sign inSign up
Console for Red Hat OpenShift

dhi.io/openshift-console

Console for Red Hat OpenShift 4.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

4-alpine-fips, 4-alpine3.24-fips, 4.22-alpine-fips, 4.22-alpine3.24-fips, 4.22.14-alpine-fips, 4.22.14-alpine3.24-fips

Index digest:

sha256:455a4825a9c58fea8cf91a3e4d656c7b41243c65ace92daa18f53b472652ccea

Manifest digest:

sha256:4a0692fcb6309308a62dbccecb78fa0d4908f8fa7a692f923cc5861b60e06886

Size

30.04 MB

Last pushed

1 hour ago

Vulnerabilities

0
1
3
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/openshift-console:4-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/openshift-console:4-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/openshift-console@sha256:2e2122671853f9a177e3279ebe26029dadec891df65fecb65cef831a6c6f5305
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/openshift-console@sha256:680aa4ed7c7f03bfebe2615db0774001eb8c0781dbea84ab7909a4ba255c56d2
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/openshift-console@sha256:b85cf4f6d10e5317af80b94e2ab2c8293124dd93660fa8011d4f5f7e6ecf8496
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/openshift-console@sha256:2a0660529890b865949fe7af63506fc0899e427547c7eed8c53b4edb62679731
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/openshift-console@sha256:0ca1168ff21f3cecd1cce8f312cd320deec27416fc652d9464fb6a85e3225ea9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/openshift-console@sha256:70f7664048a79ea9a0f4fb699a4206a29703d33b8480dec8bbf9d3d0bfaadaea
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/openshift-console@sha256:de563e9895d8b7d9f62ed5856352ddd51fdced3975572f463adbb41d3acd6eab
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/openshift-console@sha256:69e7193a563c657f7905adb047a9311ddef50eaa5ab12f49d332d06d1601ac8f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/openshift-console@sha256:5713ed3d6e121d9bc4e7a79e94ebe9105258c222e8446cd4da819af457385f68
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/openshift-console@sha256:cfa38a5d633cc2748f80f6036bc9f224756f2a268c7fdc178903d01e49eefea7
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/openshift-console@sha256:2dfac20f5ce79b54c64bba697d24e9167e659648f4e19432e506105c887dd793
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/openshift-console@sha256:45fb17575c9cec8efe32cd0b4755ab0215036df6a0e2a2647eb1a3d5130cb2f4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/openshift-console@sha256:4f521e1955b139435c3c16d606420285f769e79757a91bd6c56c37288d20725c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/openshift-console@sha256:0422e357f7efe0f2bd0f384d0f4cdf9b588119505159fc24dd6de05c2de431fc
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/openshift-console@sha256:d69673543fa0e05d776c2766ef85bf5a70190eb8d3ecd9fa0d3a8c0295c44efd
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/openshift-console@sha256:d52e0c5807ea928e2147d9ed4b9008d7571a3bb470ad1fee15bc357128185e90
SPDX SBOMhttps://spdx.dev/Documentdhi.io/openshift-console@sha256:97717a4ffa2c17dca73e03b126cfa76497181456f893bd43090f89e844591546