dhi.io/docker-dind
29-alpine-fips-dev, 29-alpine3.24-fips-dev, 29.8-alpine-fips-dev, 29.8-alpine3.24-fips-dev, 29.8.1-alpine-fips-dev, 29.8.1-alpine3.24-fips-dev
sha256:1b87ec212b69595c6dd0e53d129766372b293b3fd637045dc42d22e2f28299cd
Manifest digest:sha256:d160250e8f552dd9b4812e7cbbf0763ad98c7288b589268344d8462452128d84
Size
103.65 MB
Last pushed
7 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/docker-dind:29-alpine-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/docker-dind:29-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/docker-dind@sha256:3ab6001cd539af227b33e506a6a85746b1a4c0624be7340a00733dbfbb309555 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/docker-dind@sha256:aea2b028cf70261ac0f5cdc2288ee785daae47100f7600d6e6a3bd82cc14ae58 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/docker-dind@sha256:02eecf5e6fd5a1af7f8fae0bd851963740d15004426932b6b415bf80c9e22da5 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/docker-dind@sha256:a2f5266401a192894a67a27949d52e1ab1dc409b304a2a4cd5a0c044d44a7213 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/docker-dind@sha256:12db8f7254685f314a90c767b4a71e2d54de8d5ad7e1808de0f32493df8c44ae |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/docker-dind@sha256:e45ce57ff15fd266dd98ad9af83ab25fb5ae4b5f618fa3d3252a770a52e6d8d3 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/docker-dind@sha256:eeb67b78d4f72a215e62cd3e8e3e97b500096518e0c3d0244a298edbc28370fc |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/docker-dind@sha256:75e3d51ff4c6fe7f78adfb08b2bdf4d2909e7cd300ef40bf1b08fafed0301132 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/docker-dind@sha256:6692055ee48e515f3b21a6f47f4e8eafa3df5c6dd19d4ca2efd37c6f68111634 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/docker-dind@sha256:8944098370fe9f2cfadf730255f4764193816261c8f734bc7b7ba17fc9923e35 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/docker-dind@sha256:76c0618e20b9377cf751a3727a04cb79d036f5b7a86863af6dee7f331f533c4d |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/docker-dind@sha256:6bfb713e39db2d74b4996d61891cd4dd9c176b1766c4c3be2ffdcbad9f9339e2 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/docker-dind@sha256:0ff296a320c0d73199c5c63396e0d2279c791600ec87026bd09606d1b3d07246 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/docker-dind@sha256:51443c4f6d6233bd255de1823e2548ed600bcc7a9ed6a13dad70f8cb6bbfb61c |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/docker-dind@sha256:4381bfe9354c121837912ba4255ca4521af3fb18237f0a34794418384381f5eb |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/docker-dind@sha256:118e152faeee15a56f4751cb37a8b7a2d4048d5c973bc096a118763c65198fef |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/docker-dind@sha256:0f4e2bacf26febd6969d5f12a0208c2fe9362b31e942c0388482eaef98b6b377 |