Sign inSign up
vSphere CSI Syncer

dhi.io/vsphere-csi-syncer

vSphere CSI Syncer 3.3.x (dev)

CIS
linux/amd64
debian 13
Tags:

3.3-debian-dev, 3.3-debian13-dev, 3.3-dev, 3.3.1-debian-dev, 3.3.1-debian13-dev, 3.3.1-dev

Index digest:

sha256:836cfc49b4c1d933e2803c24df72519fe532646837f585057c19dbc7d26f8c8b

Manifest digest:

sha256:346c3f46a04fe4957a0a5e35c880940d5c3c9393f684f200ee21f878232a2ffe

Size

55.09 MB

Last pushed

3 days ago

Vulnerabilities

0
0
0
1
0

Support

Ends Apr 2025

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/vsphere-csi-syncer:3.3-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/vsphere-csi-syncer:3.3-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/vsphere-csi-syncer@sha256:196a22c4df88644a3a187176ef6a8bb7939e055fcf68411007b39b69164e3b26
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/vsphere-csi-syncer@sha256:aa1c31d095ef721484cfeb4ceedcc9cde99e5dc37d5f00e6eb662de56c920d23
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/vsphere-csi-syncer@sha256:0c0d3d18d70bd7710f1bb51105486209de0fc9d2e63ac067e7d24e6a5d94bd95
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/vsphere-csi-syncer@sha256:4ceb64a0b267411500f560c3cc85f9fef21ce08fc1ef253d16b93b1fe918775b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/vsphere-csi-syncer@sha256:d8b6881fe8e7410cce8492810edd6e2b64ce2cd39b2c7c82a0519afdadd23414
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/vsphere-csi-syncer@sha256:9c61257327e3aa55e8cff88e97104c4a9f9314c0cddc73dac12f07069b8bf5f5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/vsphere-csi-syncer@sha256:5f42654f4363939c2d0c1c1a3af244335bd53044da810c53b752b64296c20002
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/vsphere-csi-syncer@sha256:fb1a3b607523763437e1eb6756dc006045a52f220f365e92ebeb5dad0dde36db
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/vsphere-csi-syncer@sha256:73d344a17ad41485444878d06672c149acb9226a062e2962dc82627dd38ead67
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/vsphere-csi-syncer@sha256:0b48bf83804ee23868413169ff2aef47c3f7580b998c288cde010e91c79325e3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/vsphere-csi-syncer@sha256:45d1d702b4e0b945c285515e8ca8aec85bfb42c7fedf3fc1943fb6c94d0ed260
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/vsphere-csi-syncer@sha256:d1ed98c95462ab5b778f856024a1fcc4ce812b7467f81f600977507cc076b6d1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/vsphere-csi-syncer@sha256:161b583bb7cb411e660623429d6ac4ccb17a9bcc531e0bb346a3537a06ae07ec
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/vsphere-csi-syncer@sha256:cb506f06316f424542beb0df0be0cd1758edcf942f8fda99530eb9af0f23c829
SPDX SBOMhttps://spdx.dev/Documentdhi.io/vsphere-csi-syncer@sha256:515fb07bb4f0d7db252fa7b2fba9902d8150d2fda52f745eb08fc6337a1f2b83