Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 8.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

8-debian-fips-dev, 8-debian13-fips-dev, 8-fips-dev, 8.0-debian-fips-dev, 8.0-debian13-fips-dev, 8.0-fips-dev, 8.0.31-debian-fips-dev, 8.0.31-debian13-fips-dev, 8.0.31-fips-dev

Index digest:

sha256:4db3d3c9a370b76202be73e43135e4300d18a96367c44c853d4c8129eec40ad0

Manifest digest:

sha256:73ef42a93f42a200d9b1e533cb1aabdd52c9947074efbc8d89733ffcc35a11f6

Size

73.33 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
2
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:8-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:8-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:80395cb968ddeae2d22fd3d6ccc7453c4eb6c45a29756ceb87858fc8509b085b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:1e3bd9e8dca1fd2118c368290a57d62d2151b814d10ef39b5104fb8a44138b86
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:f66b0cb1f1b365364e8c2f6a678f9138860f7b53f1a73802550ca1901cc3c367
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:56478605ebd431a457042a59353bc5ea1408d7000f3ebe47a01827bab16302b4
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:5f875b7f25bed931a67da681e3eebd9bf60ab300c145072a16148e9870e9fd48
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:e9b17f1c27ef0a39f6bac0ed6bb729f3a8b19159ee9ed5034dbad305bb27f729
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/aspnetcore@sha256:b8421c1e97240720ea68445cf0eed8acfd5602f94c21f92ee0ee8bfdcc737f4a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:31da30f7e46970abc5d7626eecdda5a7dcefa132889ce82ec4d1dd366aedac2e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:47b0b662b166f78e80cbf2d2e9b15158a95c1f7e06b0756c1d36221d2703c282
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:56747467d0a7cf6566f33c5727ca0d58f28fbf658a460202dfff88b0a34d90f3
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:2405933aaf6d321f3d1b68032d867cb3ecdd284039fd97d7bbf71f43098a0dfd
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:e2ab932e1bfb9db9a1267ac99eaf76ea9d36c1f6a4a9bb0a0ed942e3b320006a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:d032ddaae7a5062d8b24a5a7407b768b2aaa7a3a5d9bb842305b33c6db7a3806
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:abb60f3cad0e74f7377f0fd61ee0c70f5e57b29240872d79a7aa27246986c0e4
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:024472755c0fe46f29dbded990bbc2af824bb6643727d00e6300403a5417d054
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:edc8eb5d24cba67c79ab444d95bb39f06459150ca47578bc4ed51aaf334f0c7c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:74d0a9536182ac1af95b28d62efa642098e59fa40f4a58aface40ecd4dce631c