Sign inSign up
Forklift oVirt Populator

dhi.io/ovirt-populator

Forklift oVirt Populator 2.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

2-debian-fips, 2-debian13-fips, 2-fips, 2.12-debian-fips, 2.12-debian13-fips, 2.12-fips, 2.12.8-debian-fips, 2.12.8-debian13-fips, 2.12.8-fips

Index digest:

sha256:4bfe6ef3f088ababcfa8fda66b84bf5e14d8cc3df38ef5d7cac5da07fe689c93

Manifest digest:

sha256:0dff4ad838b4d3aee883c0d487862f46f9fdda1f4101161a513501e3800f1574

Size

32.87 MB

Last pushed

20 hours ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ovirt-populator:2-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ovirt-populator:2-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ovirt-populator@sha256:883e4e3de711fa98450b85536eac216243736868f7c6e7d53c01e8c633690df4
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ovirt-populator@sha256:f46b297bd6b1fee9773279d4ad735a8e5970dfd76ca87f975afc799c83db48ba
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/ovirt-populator@sha256:949a297b14c4b3057b7931e6638ffdf15a114fbbce18d732c48aaad3aacbcb66
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ovirt-populator@sha256:eee5cbe7283e92b3fa7241e50f975535eb1bd493aee2719beea8d285e62d0f92
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/ovirt-populator@sha256:72b306bf6232527269b114d21501632e53aab0176b0d8a368c2c230ef6a6e22b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ovirt-populator@sha256:a0e512e77901e2d2c346c113aaee0f6b555c004a1b52ea27bea812cc8c54181c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ovirt-populator@sha256:4dfab0cb6178869dbcfff7ff6011b069b6aef9c20a3a9c74332b37cf0aea5b1f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ovirt-populator@sha256:dfdb0dfc92b2a5918d19e2ea1c1c7663f714b446d6e52ad9664263d0fbec4cdb
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ovirt-populator@sha256:1010cfbb80c818c4a06899cbc516fadf68c5902861f43d09e3b6f3a2108261bf
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ovirt-populator@sha256:13d9ee2aa01b1634fe2c94cdf1f8b03c93145c5d03cd1d0a06ed9c8db813e899
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ovirt-populator@sha256:d2a95a8edd41b2fec26021b27d7f2b5c6fddfadb377e0cf78214866bc12dc55e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ovirt-populator@sha256:e02cec0628e4789376b28ac852fb79b22391b55c75e63457ea930e0082b203f4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ovirt-populator@sha256:f9676886fe912e185bb8440ada93e729f698d38d480f95de1efb6d2a8582fd99
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ovirt-populator@sha256:059efb709aa50bce4f8e89bbfdd92895101adf88e0312b9862d13e5ce10f4172
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ovirt-populator@sha256:5ab8488e1db944db5a106d6b75d332b91f0a9ccfeb6f007f5261787535fcb1d1
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ovirt-populator@sha256:d9be363e02c3b3fbeefb0ef8789389043a2f98cc4a55ba5c98bedb1df81351e1
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ovirt-populator@sha256:74873bf38517eb35fefc5a94e43b37928b5e311d1dbd126741bfaaa5fb01c34a