Sign inSign up
VictoriaMetrics VMSelect

dhi.io/victoriametrics-vmselect

VictoriaMetrics VMSelect 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.152-debian-dev, 1.152-debian13-dev, 1.152-dev, 1.152.0-debian-dev, 1.152.0-debian13-dev, 1.152.0-dev

Index digest:

sha256:d17a256ed28f10493c101ce7c1cd22620dd2dbdb3a35cbc829619cfba94b408b

Manifest digest:

sha256:aa6baa406dae8a71df8647b644cea3eda6524c38de6e1bec83ae8021c684136a

Size

32.50 MB

Last pushed

24 hours ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/victoriametrics-vmselect:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/victoriametrics-vmselect:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/victoriametrics-vmselect@sha256:ff6710854c69cb56c6ee124080513a895254d833d1a66bc2720ef661cb766467
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/victoriametrics-vmselect@sha256:55201ea1b0f3716959fa7db28789b0a2b4cc1cee85adfe6884063fc336682424
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/victoriametrics-vmselect@sha256:7afd35327387abd628ea69ebabfc78e838ce2248b19f1308f001c16b33cbaa66
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/victoriametrics-vmselect@sha256:f36d11e4c76559f3bc092a8348565f963c7806e527a3a2cdb9a8ab0865a604dd
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/victoriametrics-vmselect@sha256:37453f0a251b7438035a2cdd4154a2aeecd2c56ca904a0a90fd9a643fb8883f0
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/victoriametrics-vmselect@sha256:468d37604c8450f7b34a7f36fec8883a3de436194fa669054807e58cff5c6440
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/victoriametrics-vmselect@sha256:6c1a4281518eae168a816d83fe4bf9d8472c702afbc5277b5091cf219d5ec224
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/victoriametrics-vmselect@sha256:0a73cd4cfd93da2f9c12163c47aff6fa1679988cc3dc7caadb94f5a5a1ea34a3
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/victoriametrics-vmselect@sha256:bc5b4f14d25fa8b84e70782044c68209ceb2a5015fc1768fad80169edcf4c785
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/victoriametrics-vmselect@sha256:095d0153807b53ddfadf3310c5fe5cfdab68c6f97063b5931316b3b22c05f3dd
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/victoriametrics-vmselect@sha256:ca587f1d040e4ec12483f3b93969aec087ed1d06d2806485291e153920f83d24
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/victoriametrics-vmselect@sha256:0ae4e9871348a45d19e72df66fb211f32e0b8534f8a5bf45403fc2033b024c39
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/victoriametrics-vmselect@sha256:a875ca63864a7681cddfbdea7034ece92d6987170666e95cfafc95b5d4f2cdf0
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/victoriametrics-vmselect@sha256:8f9dbae13d9ade03403a71c24704f6e32926cbcb1a0da9350ab88c7df42fedea
SPDX SBOMhttps://spdx.dev/Documentdhi.io/victoriametrics-vmselect@sha256:325f20f70f85e5a35fd0c4064dc5de4fc56532816373a7c14720712e87a0506f