Sign inSign up
Console for Red Hat OpenShift

dhi.io/openshift-console

Console for Red Hat OpenShift 4.x

CIS
linux/amd64
alpine 3.24
Tags:

4-alpine, 4-alpine3.24, 4.22-alpine, 4.22-alpine3.24, 4.22.14-alpine, 4.22.14-alpine3.24

Index digest:

sha256:284dbe958b2ee93f31a14648909ca41b979a4311e1eac4e5c433b82dbfadfc65

Manifest digest:

sha256:d7ccad7138302f86cd1aa427d47347b392e90611aee5d130c6711c81e2733261

Size

26.31 MB

Last pushed

8 hours ago

Vulnerabilities

0
0
3
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/openshift-console:4-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/openshift-console:4-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/openshift-console@sha256:f98aa518de57270d1f52137f14dde3fbcaa99633eaeea82b3a7b7d499abf2a9e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/openshift-console@sha256:e9069663a9ebb4bd23e0f5d12f5c1fd54a1a249d81addfe489c866528ca012c2
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/openshift-console@sha256:070e3c3cf87b184257bf71a8b6b26882d1063cbd7a97990c37253a7975b0c8d6
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/openshift-console@sha256:98331358f4d64541851b7c195012aa296b7bfc4cf671827d392c6b85a1e49f95
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/openshift-console@sha256:9e9c6d6ff980b3ca0a076ac897822bc744b2a874ba47ba379763409f25a28cc7
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/openshift-console@sha256:ebf25b4175badc74090689a6ba8b89b190fc13d5e470ba5006c709488963a5fe
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/openshift-console@sha256:4a6ee64b27edd7bfc651533d08c6327b7d8c43c23a4d82a90702db2b50b7168d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/openshift-console@sha256:112a057a6b4db65a6db33c788e6ba25355eab46eb26c4a72fcd93a36edbe8fa0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/openshift-console@sha256:1b0fcf3d6949f242b07ed2d89998b343293cbefabe03d735db79b7579f03e6a2
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/openshift-console@sha256:ee8f037a9acaea29f3edfe99934d82a5cb92608ace1719bf033d55d8026b5f8a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/openshift-console@sha256:9cd75849f3e3b642b776e1c552b07ff55df62e8d95dab1d4f609afa9ed463cfa
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/openshift-console@sha256:88ddde1e6db02aa69c50a1d28a485ede0a7e9a81f9a5d6366a6c2a1717f73e15
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/openshift-console@sha256:3eb87bff196307486bfeb900a503a13d83ce6053bf05bb296137372531cdacfc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/openshift-console@sha256:030b2edfaa9c2e3ef2cd27a0fd7de85746b3323ba41bdcae46616f912e2687b7
SPDX SBOMhttps://spdx.dev/Documentdhi.io/openshift-console@sha256:786152c5b24220bfc50e170e158b10d257ad52dd53f8b24b23693cedc255456f