Sign inSign up
CSI Hostpath Plugin

dhi.io/csi-hostpath-plugin

csi-hostpath-plugin 1.18.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.18-debian-fips, 1.18-debian13-fips, 1.18-fips, 1.18.0-debian-fips, 1.18.0-debian13-fips, 1.18.0-fips

Index digest:

sha256:404c7ff6146be9766dd9add05ee3e5ad4e56e13a68fe76bd93c88e69ce44bbed

Manifest digest:

sha256:445eb916d95f4422489d06959761cb5c7b8e00e02ede571202c9d4c666944302

Size

13.71 MB

Last pushed

20 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/csi-hostpath-plugin:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/csi-hostpath-plugin:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/csi-hostpath-plugin@sha256:1f4b3301e3f908e4531a0d7ccac49dc9e2e6b6d6f62da404bc4d3fba9d6b07fe
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/csi-hostpath-plugin@sha256:db6ac1fb2cb650c705889d88f954990fac63f3a679cab8b8a6edff5847b32a19
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/csi-hostpath-plugin@sha256:d3f988231ff3eb723a0c00a27d084968626b8321f989360f3c63f135952e226c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/csi-hostpath-plugin@sha256:4c0b4aba32188d3f24b63ad923ac485b6b28368cb2c16513aaf3ba7c68d65eae
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/csi-hostpath-plugin@sha256:601f2c4673419ed79009596ed97d685ffb037c606536649e374b2ce7cfb1daff
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/csi-hostpath-plugin@sha256:b94335eb57e4962518406eb6c31fe1e913d82edf462c0a5bf327ca2c1ff991f0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/csi-hostpath-plugin@sha256:e8cf92acbf2d2a2d882ae42dcfdaaedca1dd94706afb4446ea158577a1e161ff
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/csi-hostpath-plugin@sha256:3d2873e1583d1d3ebe0f5982c7810d8d9c144cb60a256c6c86ff88f229c1e1cf
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/csi-hostpath-plugin@sha256:a8ba0d430844917403d63c23c0ca865da57f6707fc93c85f5d66acd0480f8d26
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/csi-hostpath-plugin@sha256:41bbdade94d847e5db6d076bf794b0361b3104e0da0557bf63b06bfd86cbdef9
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/csi-hostpath-plugin@sha256:22db50933ae035c49c9039f41467be5cb39bafd2904ac9ca9ae17bf6e5f27ceb
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/csi-hostpath-plugin@sha256:d21de6519fbd3f14e9b3ea8880c40b80affc9aeea3902c902acea69c4f7f8ed9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/csi-hostpath-plugin@sha256:43bbdec6e5ed70ed8c6f174925f8350bd0abb686dab6dd44c2e814743b10fd13
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/csi-hostpath-plugin@sha256:0811804624658d3156dd7c71c4e17416f9ecc3ffb3312441edf9ead336880fe9
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/csi-hostpath-plugin@sha256:40f72eb42f2a2c004a18975dea33baaac3ed5475125fadf2872cc307ef4686a8
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/csi-hostpath-plugin@sha256:16d8fe0772f57b53620b9c4ccd08462b8ca9ea3e6318a079b1a91b92dae9c39a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/csi-hostpath-plugin@sha256:f5d57b74bb3e6940923d3a8733b5ef692eee2d66deb1395b5fe6ec56b8197ccf