dhi.io/virt-handler
1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.9-debian-fips-dev, 1.9-debian13-fips-dev, 1.9-fips-dev, 1.9.0-debian-fips-dev, 1.9.0-debian13-fips-dev, 1.9.0-fips-dev
sha256:bd1b16a47b050ec04b73c015021dc0a9c63e40bb85319b350a4aa39fd8e804c9
Manifest digest:sha256:b5829631ffc8258ad71863f0bc8fb58274e96e991795caf826ddbcb0f65a74c9
Size
75.54 MB
Last pushed
5 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/virt-handler:1-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/virt-handler:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/virt-handler@sha256:fb0b807daded660c97a8fe2df817faec78f7dd93ded7c9942144e553d4f649ed |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/virt-handler@sha256:0a8aa07a36601377469813ca42b96fc03e5be17e5091eacb67bc38c8c28a6b94 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/virt-handler@sha256:0efd2be1e62e8aa06db922ca2df06c53513927f26f8cb86af357a24808f0d9e1 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/virt-handler@sha256:daadae775006ff3a3609ea71b2f36a4ba63d4f9b904a09f7a71e163fd9962f87 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/virt-handler@sha256:eb77f40b9ef27f493bf6284c6e53971fe2e1fb01e3fccc064481675fec2bb77c |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/virt-handler@sha256:991179969e795f07b21cb6abc36a2deaffca2b3f92cd4a11616b79bf19b5eb25 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/virt-handler@sha256:2bd7309cdfe66232da357d1e37edb5abb183e287e19fee077f9470e7c13bc713 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/virt-handler@sha256:4ab6cf5479fce087fffb2456c96334533536176f35ce46976bb87919dc9416c5 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/virt-handler@sha256:5427d8ca44bff4ef80e01a27c41d4a41ec68c36703fc4bd34b846ca53ce7fbda |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/virt-handler@sha256:31620740502583cef898f4ec3f4e95286573de75a5fd7de169cf4238e636279e |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/virt-handler@sha256:6b5dbd678b2697a50f63cea96977e0bf332226a0fed7dfe55384a208a9b096a3 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/virt-handler@sha256:8d3cf22d66d008a24eae4aaf9850a59cc5cfcc5234e3f3b006ed3dec23eebf8d |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/virt-handler@sha256:f7efb1f97419e64bedb3ad1888aaf44c84e7235bc0ffae2e496c4178d37ff12f |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/virt-handler@sha256:66caf3618ceb91b4cbb3cbf07a61b936287906104570c165888b425070299fbf |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/virt-handler@sha256:ebbd7f143a22de9e9978e0436905ba1e093794cd9e3d7fb9c2f0155927b41c72 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/virt-handler@sha256:ae7bcdaecc6a955ec1d25b9829c3f3b8af4e8c686dc8120ceeabfc4def77b7ae |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/virt-handler@sha256:c494ad2d1c29bfbdda845d629f3b8b732f25a5bbebaa50842a61627bbe7b173b |