Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

10-alpine-fips-dev, 10-alpine3.24-fips-dev, 10.0-alpine-fips-dev, 10.0-alpine3.24-fips-dev, 10.0.12-alpine-fips-dev, 10.0.12-alpine3.24-fips-dev

Index digest:

sha256:d16a9889f43aabc25d01db0c66f2f6315f1c276e177dc5eee5ed979e64c8fd9a

Manifest digest:

sha256:4b4c78c20fc1f7953be55673b91c0b201f178a7371f91d0a0ecf1068f5b401d2

Size

58.88 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:10-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:10-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:a271a2df27ff1568cd0d0fb5e8d0bb128c756a76fef2afc01e8f5f47d9f33a5b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:ba4725ad5a507f1d4b9f685252554717db464bb9021f2cf7984e110947cf3e7f
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:73d101ac9847ef416d191fcb2af66d59bd7241fcbf5f21386191bb0623d4b739
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:6435d0cd3cf517297220e325dc695aee004cb3adad39ffdc5b16f497c0b504e0
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:5070274b5544d0b560511c230ec92cc6bc47b624a29a0d21669fea182b0268f9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:b0f8d626cb523392e9de449af89a997198febefdef3a99180b9375f9356eeb82
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:c13f397dd0361699d5056cbe58383ffff7a7ac553527ac1adbd69f6bea962d98
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:ac3a203777adf45071ac58150bdccf4191dd9c33e1523e37f115de5ef4b0ffef
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:178d7c99d8f6140e966b03d73ad8e8f00f31b36b74bb201b3170996918d0b4df
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:df0dfa06e1072f2199d26446f9f1d4eff60f79fb4df1ea10f3cbb6ac8fa12b36
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:4550f15366b9eae24643bb7be003efcaec3c43e0bacf3b3c1482826e413807ac
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:09075ef2580a9f9451c88d424c0e2290b5fd42dd629603fbb8617cb5e6df3af8
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:99009adc4692c5a3aee8636251a90b3d634da675581909ad29b9d2c6114b69ed
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:5b526ec9d3ee7ed9edfa7ef92742eced2d639446f221676fc402d99fe716c755
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:ddce219e1ff8cdb787cf3d6858a7fe4e7bee4251cb3d903b1f46e7fb4610bf48
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:a3569e5280ecf52011612ee068a2182c3d54ff08cfab8aaadb899847ad52af3a