Sign inSign up
Forklift oVirt Populator

dhi.io/ovirt-populator

Forklift oVirt Populator 2.x (dev)

CIS
linux/amd64
debian 13
Tags:

2-debian-dev, 2-debian13-dev, 2-dev, 2.12-debian-dev, 2.12-debian13-dev, 2.12-dev, 2.12.8-debian-dev, 2.12.8-debian13-dev, 2.12.8-dev

Index digest:

sha256:384ffe25bf657c3bbdef79547f046e211bd7435a2985cc69b5d6ef88d92f690b

Manifest digest:

sha256:433314016398a4794f088a949515a6155d2696280f538fc6f8f9b224432f7205

Size

47.01 MB

Last pushed

24 hours ago

Vulnerabilities

0
0
2
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ovirt-populator:2-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ovirt-populator:2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ovirt-populator@sha256:316e07c81ae7e702db1d19d17adb9682256539b9449250d0b2b12112156dc43f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ovirt-populator@sha256:563daec13ebf3c1c07a080558958734602745524c67e31bb551fa4dbec35730e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ovirt-populator@sha256:af9d1b6c3e752826ff945db3be549ebbf6ce1ca9fc3905f5d199dbd82caf5939
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ovirt-populator@sha256:55724bca35d96856dece94bf68beda14411166b550adcd38e94f404ff9357e1d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ovirt-populator@sha256:ca8eb01059e6190029c085e264abc6610d82e41a07b517204977d9b95b9d47e9
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ovirt-populator@sha256:b64f43afa684b51e8b3ff5c5e5a046f9cd1b9070d3d9d1eb029462585db8e065
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ovirt-populator@sha256:2ff09ca151e416ea6ba3aa0a959d542bfc7996a5a814c0c5b8f09a86ad9844a5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ovirt-populator@sha256:c87f821f464f652ca73dc3344a1e91a8526431c664560ec0c062c0ac96e21525
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ovirt-populator@sha256:9abc97f2e8ea2bf710142bfe1a17462126d762bbeb8983adca7bf02da78fb054
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ovirt-populator@sha256:ae5ac91f4a0d8e0ccda44a8890046bb4b97aa2392e6943ec66e0431a071bc598
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ovirt-populator@sha256:a6a2f0c3ca37dd053524f45d13f5998f269cbac6184ec214e78dacbfea4a0a1c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ovirt-populator@sha256:914dfc4ec261a39be25f97985104205a3cf8f5f81fadeb24c986025d0501aa40
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ovirt-populator@sha256:b6aa9aebd88bb19870ec83a65a9f0944bdf50dd0cf31c085579384dc9c0e0dae
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ovirt-populator@sha256:814a9ea1f3d81ff2323baa2bf21738340518ce2b16e19936c7b2ec0f3bb4e9e8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ovirt-populator@sha256:633a70e6ef89d140d29c8adaf71a9445c5d3f3b2452cf3416161a0568ab7e129