Sign inSign up
vSphere CSI Driver

dhi.io/vsphere-csi-driver

vSphere CSI Driver 3.7.x

CIS
linux/amd64
debian 13
Tags:

3, 3-debian, 3-debian13, 3.7, 3.7-debian, 3.7-debian13, 3.7.3, 3.7.3-debian, 3.7.3-debian13

Index digest:

sha256:255015f2def846aae445180d43b4207167125d26f26f89edffdb69134bee5e58

Manifest digest:

sha256:6d4d70aa4d6b62dda8dfda2f9fb7848fe791668e98ceec9c908493f96592b6d4

Size

61.14 MB

Last pushed

1 day ago

Vulnerabilities

0
0
1
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/vsphere-csi-driver:3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/vsphere-csi-driver:3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/vsphere-csi-driver@sha256:07b56ee48e502bf2bc82ec5db1a64a8c31b8a36c4a59003691e0a816224a6c75
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/vsphere-csi-driver@sha256:9dd4ee8edab33e836602055e5a06e76b6eaa350259fb046ca88fa265ffea9418
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/vsphere-csi-driver@sha256:115949717afc322f6ab94a084cf7298c9c9ea0fa795deb12db6e961d522861f8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/vsphere-csi-driver@sha256:c9bef8f40346a00de3c88f6e8488b4f8db9673c9414f22b5461949465e5f8e71
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/vsphere-csi-driver@sha256:ced656a4791467bc2e3e394015b4512a6a8aa841b848d0b4d0cad279cef9fd46
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/vsphere-csi-driver@sha256:db534c61a183d3e7fa9e15730222decb593c29a441ac2537993bd9d2473855a6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/vsphere-csi-driver@sha256:9f5a3c1eb3905db6c6f1cbe7ec3d63b7f168141cfb3e87d11f97a5f924c85b1e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/vsphere-csi-driver@sha256:8d8de991f1cdd2ed307f78f6a18ced8e6aa372b7e602e4c7a4c234f03d450854
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/vsphere-csi-driver@sha256:6ab48bee7cf734cd01c06525d15d8a5f445afc5ac3d8bf17703318029aad4141
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/vsphere-csi-driver@sha256:04229b6d87b46dfd489d14dd58e35b8a50125872a77c84acfe338b10a2d2990f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/vsphere-csi-driver@sha256:6b04a1b9785226a98fc1ba58f5bb7b6bfc3e1ac383a626c8937d8aceb3e53716
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/vsphere-csi-driver@sha256:2fe98ebdf46b7ec64a424f73c8cdbf43494468988e5cffefe059aeee7597f6fa
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/vsphere-csi-driver@sha256:ce35861cf47df33c0fc9d368e470f5ca7f2ff6ee175004ad84bf264a98fadee8
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/vsphere-csi-driver@sha256:eca7146c194308f6fdec0666febfd0a28d65d9598025df2113f864ff113e6a0b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/vsphere-csi-driver@sha256:ed2e997d5c9c77c2b925708aa6c3f4999d49bed6d12367161a38e0938cdbdd81