Sign inSign up
vSphere CSI Driver

dhi.io/vsphere-csi-driver

vSphere CSI Driver 3.3.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3.3-debian-fips, 3.3-debian13-fips, 3.3-fips, 3.3.1-debian-fips, 3.3.1-debian13-fips, 3.3.1-fips

Index digest:

sha256:0daecfca9a654106cfab3f4c00df10471eeb8c19e5e264a901e108807495974e

Manifest digest:

sha256:a1e27f8db35f42d8e6445cc7b5758910b70c6352d74b0726967bb970a7e63ceb

Size

61.10 MB

Last pushed

7 hours ago

Vulnerabilities

0
1
1
1
0

Support

Ends Apr 2025

Request ELS⁠

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/vsphere-csi-driver:3.3-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/vsphere-csi-driver:3.3-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/vsphere-csi-driver@sha256:3a5cd9cce1bc8b75c73e78b0b1f9dcbf336d88534041cd85de9ad9f6a76e59b8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/vsphere-csi-driver@sha256:e3f20f65aa0bd1edbdf420f3f2811f4275c6fca6b68fc644f1d20b23d8156345
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/vsphere-csi-driver@sha256:0dfd3f7da76ce166a2444bfcc6ca34b73f35661020b74ee5c52f5408e968e82e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/vsphere-csi-driver@sha256:e794d98fdbd5d975715abbfdc4db4df90a8b54750ce53305b15212826e1ffca0
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/vsphere-csi-driver@sha256:ad64fad051f301d3a795132761a2808f2758e65ffdd84f540bca7bf96f344c07
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/vsphere-csi-driver@sha256:3af10d5b1f20d17d358c6510315c704dbc4877743374b666367ceed874961714
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/vsphere-csi-driver@sha256:b213372c5c15053e0ff62435e689257a8fae1f630db4d12da736041d3428c761
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/vsphere-csi-driver@sha256:4566a2d4cfa31710f40c3ba50886ccf09ca801ddadc95d6b1adf77b0a1c83a96
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/vsphere-csi-driver@sha256:13a1bf0346d885707de5cf388ddb957dda9e0ca64980e1b9b199af0d884b0d98
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/vsphere-csi-driver@sha256:8a9aacf05c9f64e78e35d39678f872fade614c0a1078e1db5736f6dc42853efb
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/vsphere-csi-driver@sha256:1366126bd47499696f5bd7c2baaff90d90c123d7978a100226ca07a5c3cae737
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/vsphere-csi-driver@sha256:156de7cfe34aba91b9a2328718e1748c7c4f92332631344f6fe6c6328fd128db
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/vsphere-csi-driver@sha256:a6a13db02305d89c5f56691574f430eb5c4600c01483ba4d701ebde68956bb9c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/vsphere-csi-driver@sha256:a66d843193daa9cf06a6c003aca6221d5156d4b2b9746af926f3319ce48c8ac0
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/vsphere-csi-driver@sha256:532b2495f787bd266adef95565ec621bb362a5346dfc491cc0382d11287db4a9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/vsphere-csi-driver@sha256:3a9e3ee508d3e5ae092ea839437ef42fc1731bc0334d2d8409e0154376ac5f56
SPDX SBOMhttps://spdx.dev/Documentdhi.io/vsphere-csi-driver@sha256:3de3b3603ac5f0436738a1a078fad8492ae389518058dca781696fac3255c573