Sign inSign up
Forklift oVirt Populator

dhi.io/ovirt-populator

Forklift oVirt Populator 2.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

2-debian-fips, 2-debian13-fips, 2-fips, 2.12-debian-fips, 2.12-debian13-fips, 2.12-fips, 2.12.8-debian-fips, 2.12.8-debian13-fips, 2.12.8-fips

Index digest:

sha256:c8f3d03301cf7159c6db42735161cc8be2aec4fe7248ad05b8fbb71ec84ff7e0

Manifest digest:

sha256:a3b7f3dbaff4eb90e91ce79ebb4ce8ee8b0f1fca22f9187f11e48bbdf25d90a9

Size

32.86 MB

Last pushed

24 hours ago

Vulnerabilities

0
0
2
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ovirt-populator:2-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ovirt-populator:2-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ovirt-populator@sha256:d033d84f2836b19a1fa0d56c6e6b828ccbf044ea9922200b36c94717a411814d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ovirt-populator@sha256:3b06ef88a5878e8a0623dcc486c53fc1e9cb90c257e679e60c3985a5b5b8ca9d
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/ovirt-populator@sha256:f69d1fc13e58ba4b4fd7508b0ca49118ad27892c7a5d5c6463d57509d7cb7f0a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ovirt-populator@sha256:ce9bd5d1dd3f3f6e5cf0337e743e3c593cf6a4e28c15a2e3c8483279a04678af
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/ovirt-populator@sha256:956ebdc3f5b830a81c41d422786bffc01067851f55b642366e7d53f911867c4a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ovirt-populator@sha256:455ae1e43a9e57d9fe5662422ce591e6a5720bf91c73ee272abea07d35109726
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ovirt-populator@sha256:f7f040bbb3777d2b962be133c795db1fa2bdf8a6e7d033fe51934ef276df56a4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ovirt-populator@sha256:b338154b11d78dd0468ba06556f4ae8ac15727945b7920f820c04c57a9cd9c54
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ovirt-populator@sha256:7a9977136df1fbaaa0d63668a0fe2ae15281d8790a14879cf3f4a28a126ded19
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ovirt-populator@sha256:6fe24c0a6995c95d3f69574d75bd92065860eb235dc7dc7ff13c640e03401454
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ovirt-populator@sha256:9e42d6632596ad6992fead1c02f080d38a5a8988cfa8978c46745461e5243ce8
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ovirt-populator@sha256:48a4491ce8fdd30308f35bd4063c628f8c33dc33974100045d2a3b9186597c9f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ovirt-populator@sha256:3f8ca1aafcedc7c4d5f0de4ef2ea6a82bc2ec364b4c837bcb95243ebf9e2037d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ovirt-populator@sha256:4bbfa830ae4127303f448b903e3d581b05e726f8112575f4c636b9f43eae3fb1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ovirt-populator@sha256:1b0713d1a34b9df0d74d4b7fdfe8dac21639dd487fac71dd7df14371712e7e1c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ovirt-populator@sha256:b6a788b8e51bff0c0cea691ad81d7630fd7e6cc62c0d089eaf39e6598f863557
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ovirt-populator@sha256:9d583224c1402b9711da9c2777688de7cd2c23a5cbaff95ceaf65bfec21fc947