Sign inSign up
Forklift oVirt Populator

dhi.io/ovirt-populator

Forklift oVirt Populator 2.x (dev)

CIS
linux/amd64
debian 13
Tags:

2-debian-dev, 2-debian13-dev, 2-dev, 2.12-debian-dev, 2.12-debian13-dev, 2.12-dev, 2.12.8-debian-dev, 2.12.8-debian13-dev, 2.12.8-dev

Index digest:

sha256:ecd1e8e5b5982af6d913880c0ba5b1ba84f1d762834a2a6b170365efa736acd5

Manifest digest:

sha256:1e9e78ed43a9254d600da68f94c051cd33a237db07c69f9e8ff5d144ba2ac283

Size

47.01 MB

Last pushed

20 hours ago

Vulnerabilities

0
0
1
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ovirt-populator:2-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ovirt-populator:2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ovirt-populator@sha256:7fc00b4dacd17a58c60b4b268924642261de0fb9fd3bf45ffe4a7644efe7a314
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ovirt-populator@sha256:7e108e7ecf22bda8abef8e543cecbe698d828ad0bbce7a79ef4336fee7a21c9f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ovirt-populator@sha256:1c7d68fdaf1f9503d3219def455a25355c75054f501cf9530e138ddedbdd9d88
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ovirt-populator@sha256:8b6ed274c8db912f7be66794ab6f1ecae3bb9c53f0d89db78b9fa82b0b7e512f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ovirt-populator@sha256:cea28ece1fb97106bca5a6d6b504eeab12093c6b299b7a67256ca37c08f3bd48
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ovirt-populator@sha256:49401a77cb68a7817ecb25a66fe2cb491b9c6b750a51ac126d64066c3d5fab4f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ovirt-populator@sha256:fc265989b2e7ab8194ceb4eedfeb69a35a0cd54dac5750baaab639be2e64df54
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ovirt-populator@sha256:ea2a9f08b22e1c5604ea34bf7566357113bc3bd54b1d3272544044f94ebe9951
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ovirt-populator@sha256:7f9f5676fd0f0f6f75c0129aeb3b2c136006febd6ed722f4c6b9a5b964b9804c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ovirt-populator@sha256:66e30bba639bd6c93c51f1af835132236b2b160de530527c4b5da7cda7fcb435
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ovirt-populator@sha256:484d9f280a5140c45b1b5cb3dd588ac6b025811f9d840e8f16ebd836ce181b8f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ovirt-populator@sha256:f92e3fd7816f9f16ca50e778967a4375efbdbcb343be0dc32ef0deb28d61a45f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ovirt-populator@sha256:316f0b26c19575e8e1960e1a9f5541af52bad0239ca41d9931311a7ecdc5d88f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ovirt-populator@sha256:e47ee2bcad7577872d2257f73f8203b5f21e967234eccd62008cd94cf1354a12
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ovirt-populator@sha256:9aaa189b10ffa4c9625b919a153723fdd6da12e811e0188fce102649486dd6c1