Sign inSign up
Trino

dhi.io/trino

Trino 483 (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

483-debian-fips, 483-debian13-fips, 483-fips

Index digest:

sha256:03673f914bf12ac70f1f1a9d6214aefac8639d725507042c15a7a936720f01cc

Manifest digest:

sha256:b74654fd7ba66121253e34371d55eb95d473af53c783b4218ef09db6b11655a0

Size

302.95 MB

Last pushed

13 hours ago

Vulnerabilities

1
3
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/trino:483-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/trino:483-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/trino@sha256:a1ccfdd8655edd84bc9fe36879e551339cc6e0df76ba71db942be43c04aeb2c7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/trino@sha256:af36d847ac8e6df23f4dd94c2135de1eafccb0fb9b0bd3beb7ee30f5ee3c87a6
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/trino@sha256:8878ceddba4356cf5415da180a1f46f4e9aed572946d8b65ebbecb2eba643c9c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/trino@sha256:79a86b311c2728c8dd8945d2bfb8e06f663ccfc146a787c06591e26a9dd941d6
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/trino@sha256:7606e8f5dd3a7a1451df54152fa71aee8c101ca01d40499db953f860c381168e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/trino@sha256:e6376f2521a893726e44829a512e60e67d84fbf824bd6d375bc3412794804230
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/trino@sha256:d74c59df0094bc5c225d7e91a1cec4f422f5a9def092b05d83bd31fa411f33ab
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/trino@sha256:f76b270ea8a63db2a857e9f2e330a0c82114e26943aa88dad05bded798f5c46d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/trino@sha256:788d9496dd057d0d6ba872a566d5ea68b613c000da7f0535361c63cea34f1a3e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/trino@sha256:a0ee951d7fea302ec2b8226e35ae0a36f4b5c6b02c3c4081a739b7a7933752c8
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/trino@sha256:2676968625bc8543d131896ee6dc675c5073dc1d34694751b4b7ced5ff54d386
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/trino@sha256:892cc084b9b8a3056004f20fd341b2360445fa9b006ba634dcb088837b5092a7
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/trino@sha256:a6acaaec95beebe04114e2676bb982427fb0c3d16249d65f7470f5165fbda00b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/trino@sha256:ffefd86709403b98549beda0f48be0712192b34147d2c0707836a31a2227b26f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/trino@sha256:06078580d83f542bfe9078edc18a87c38296cdd6a3fef864eaaa5bd1428f73ab
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/trino@sha256:9e223fe5a5ef4f812361676309d54b862176426328bb67487f2adb39fc768b65
SPDX SBOMhttps://spdx.dev/Documentdhi.io/trino@sha256:f749451366bf85b29b497ae82f266908c335843fb810032814539a7d2956fce3