Sign inSign up
Calico Node

dhi.io/calico-node

Calico Node 3.30.x

CIS
linux/amd64
debian 13
Tags:

3.30, 3.30-debian, 3.30-debian13, 3.30.7, 3.30.7-debian, 3.30.7-debian13, v3.30.7

Index digest:

sha256:cb9b056583a1f32b4e1fe40abebfbdbf7336ac61b8d0c35f8526df335d9a74f8

Manifest digest:

sha256:3854dbbd48a293975e924297fc414f370a745ef5e49a25dfe3038f1ecf39ab73

Size

54.23 MB

Last pushed

2 days ago

Vulnerabilities

0
1
3
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/calico-node:3.30

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/calico-node:3.30 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/calico-node@sha256:f3b13606cbaaaab7ea3b9633c6b8573ffb72c3a97f453b2d0745e49e3f7d1ec1
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/calico-node@sha256:d6610582d0fd08135e3a9a735ac4fd288ae0cd0d1ae8d66170f0b83423ce2195
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/calico-node@sha256:4d5ac624bd4168c499e17eb6aabfde6e06c38faeeb1c9dd6d42cec389fcf6441
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/calico-node@sha256:2bf78542a11ff6117d70a097a2bbbb4a2e3f3b46d66474b83b893dce6b1d56ae
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/calico-node@sha256:4cd12543af590e6e0a157240638cbe072d68ef3a72dc1d34186b3e0cdc6bf060
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/calico-node@sha256:f24dfbb7430cdc2722e4e1b44237c99c32886d6deb345942d134c7584bd7e06a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/calico-node@sha256:88a4bd8eee379a0a498ecc0fa6a17b7e5aaf21d1f895a151140192aee7a74fd0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/calico-node@sha256:ddb839884c0a151c7bfe52d10219d03bbe05fec51d47a6857b1c4762bc5a425b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/calico-node@sha256:363748888ac58962de644ebf0c5ac3d2b77277b690bea37bff02b4f4ee48be6c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/calico-node@sha256:d506ed4f9ab339e96f3cc55aed2131858388e65e7f5f84fa0c750bc20d67a526
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/calico-node@sha256:15a646cf788104b22a3ca9f6908c35cd0d097c7f0b7a9c5255cb01eb42385896
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/calico-node@sha256:e16d14497c2cb6a2b4ef9b058a50df31419d02683e9ad72199c7615d995bb3e1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/calico-node@sha256:ed03f435023b75494b432402ef979f49b148519d1f554a2a0780ea49c70b4e8b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/calico-node@sha256:c4b2fe01aa802a56cca5bf158bbd562eeba267e7cf1182497031127fbe7fe33f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/calico-node@sha256:ee123a01a28bd177b2906c434f6e96164b1fc5de3bd3ab26c1143871478f669f