dhi.io/cephcsi
3, 3-debian, 3-debian13, 3.17, 3.17-debian, 3.17-debian13, 3.17.1, 3.17.1-debian, 3.17.1-debian13
sha256:e8b4a072d1f7fc78878c64d676eaed6f489192de0a17d0d38d94c66f1acc6efd
Manifest digest:sha256:211ba5de47f1accc4a1073f6e0ec426548ec4a199df03c91e40fca3430462b08
Size
123.76 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/cephcsi:32. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/cephcsi:3 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/cephcsi@sha256:ed93368d2255b3857b8c9070950835ba6a9575ca5b8a17ee0457b6f075696dc5 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/cephcsi@sha256:d1284475a87acabb56e52a8b1564cbdbde92272d0f25e0b9dd115710598bc732 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/cephcsi@sha256:486a3df9ad1402a373d29cc1aab387e98fda08508019f2228793d82148f6f55f |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/cephcsi@sha256:a47df5889d536719f4c40aef27193025c53e1653dcd7fb1a33ec8975571c4d5c |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/cephcsi@sha256:9e2d1fda247fbbad250854a749dcde58db7e046c49ebd4d445a952d5c08c01c4 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/cephcsi@sha256:a3cb3626ce2f3c71be7eb16bee41407341d3d3b5b4a31c5923e1e81b94d47e9a |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/cephcsi@sha256:dcce57e12b6b6b1c5490a443ef6d8eae347f6bb4c5ee63226ca3b3dabbe1ed14 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/cephcsi@sha256:0fb018fadd76b08f2f7c3e07414090c8cd2415c9bc8e8669b26c0df51fce8016 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/cephcsi@sha256:326592b91d3da7a58fb52d47ac8deced8b283da7a7d3890272f6bc9b618ca930 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/cephcsi@sha256:c96bd1f7213090d3886a2f4fedac03ff613821d3fbfdf1d35bdc336c5cc39ac8 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/cephcsi@sha256:24896df990f0ee301a526e3ae911c4de8a9c94c9fbcb01d21dd98e14e4baa66c |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/cephcsi@sha256:7df1ded1e437873fce1b44022f587b2d725f10908181da2e9975ba6a8a37b9bf |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/cephcsi@sha256:532c0e114ca6fc223992fe729a7093e71ad9fd09c57275a5bf39900477781675 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/cephcsi@sha256:8f9acf5911b2aad86caeff7e7f17756a6eed8a1fafe8507c422314489eec27f4 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/cephcsi@sha256:e5910ddb797661b65cd29dc4f48e766090a0bfee9e6ee6313e3f53e4aa370d3a |