Sign inSign up
vSphere CSI Driver

dhi.io/vsphere-csi-driver

vSphere CSI Driver 3.3.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3.3-debian-fips, 3.3-debian13-fips, 3.3-fips, 3.3.1-debian-fips, 3.3.1-debian13-fips, 3.3.1-fips

Index digest:

sha256:f4e70aaa1122b7995aeb89aebf865f37d90e3d1557f7bded4ee2d99b486aa1ee

Manifest digest:

sha256:2733e64c598ce836726d78fed96c33933c16acf60664322038a7df66aa8823df

Size

61.10 MB

Last pushed

3 hours ago

Vulnerabilities

0
1
1
1
0

Support

Ends Apr 2025

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/vsphere-csi-driver:3.3-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/vsphere-csi-driver:3.3-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/vsphere-csi-driver@sha256:79829d759381a747290474f9bd041685eaff572482af8ae7dd023d79731132f3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/vsphere-csi-driver@sha256:b89478efd62b876a41ea263c5120ed0c520952a4af2c75e1e072ed900c002a2b
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/vsphere-csi-driver@sha256:8fee014c98b190c99aefe82a6e1368ff2cc1b912efdf2398318b5190627e0b2f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/vsphere-csi-driver@sha256:5e5d9ce507ee036177434269c16f60e40dc187b36f1e32d8411fe1eff7664f0b
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/vsphere-csi-driver@sha256:78de9de1a12ad4fc4d4778cfa06ac58f424f109db1c3856dc201202caf06e0f6
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/vsphere-csi-driver@sha256:7de833aff232069881d29f471b0778139db3b151e8494f964e654248457af5d1
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/vsphere-csi-driver@sha256:1507720a015b5a9cb63c878ecf0903efd52e3c2814e0e5214ad51feaf16fda17
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/vsphere-csi-driver@sha256:9d619823d95da18e5d7e031f88d02f9f861a3091bbcea24176cf890d0afbf73c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/vsphere-csi-driver@sha256:68b023afc9be81d9cfd0e7e458e3b85273b7609a24ac7861e80827b9d00a1655
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/vsphere-csi-driver@sha256:87c9cde7790dee20e5e9874ce855e7a0a01131aa1bd1c3b37ae70910161e22b4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/vsphere-csi-driver@sha256:c3ec0d6a43ba7185b5afa9aad24cb91e357b943a196c792ab6c6096436ec9689
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/vsphere-csi-driver@sha256:bc39e0d5abcae095f796e096c32c1843d8b9cb85b6e5130383395decf31cfac7
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/vsphere-csi-driver@sha256:41775d8734a2009ce93d613b9448eba9ce53503c8fdc871dd3561d0e7e521ad9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/vsphere-csi-driver@sha256:feb124f0e444f8d86dd2a9a93869dc4bc3f833e97a160d9f853ac5532e9b8795
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/vsphere-csi-driver@sha256:783b6f162fad999ac5861370f2e7639af23fe4d1ea54306a2fcf8411cc9b7b98
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/vsphere-csi-driver@sha256:400b0e1d7ccacdfa28c16c758dc9d76efdef2ea048b2f4d6240b3c1a79a82c6c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/vsphere-csi-driver@sha256:91cbdb0a12b7c246e8bf7620c7e45357448c8d8f241cfe410faae894c2458cd9