Sign inSign up
FleetConfig Controller

dhi.io/fleetconfig-controller

FleetConfig Controller 0.3.x (dev)

CIS
linux/amd64
debian 13
Tags:

0-debian-dev, 0-debian13-dev, 0-dev, 0.3-debian-dev, 0.3-debian13-dev, 0.3-dev, 0.3.5-debian-dev, 0.3.5-debian13-dev, 0.3.5-dev

Index digest:

sha256:fdef337324ac3d56f76318c56a2ed869eddac5d805f765ccf87f0df5f6e7a4cf

Manifest digest:

sha256:fdb2ae8448d42e133603ff6f30327d3d46e712aada4e906cd807edfb07608568

Size

89.87 MB

Last pushed

19 hours ago

Vulnerabilities

0
0
1
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/fleetconfig-controller:0-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/fleetconfig-controller:0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/fleetconfig-controller@sha256:9da4727544b483a5399089c4dc6c3c686074d59672aadc1231f5fbae929a9df5
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/fleetconfig-controller@sha256:f3038cfe0981c9fc5d1c56d749ca83300a3876620eeabcda294c5906f90370d3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/fleetconfig-controller@sha256:3159619f05f9b15ae3a548b4c546202871ce9d807aa34af50ca713b1ab77e6e8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/fleetconfig-controller@sha256:ef0f643452e8be3fdb59f499d9974f3400dbb301d2931802976647f30afc3014
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/fleetconfig-controller@sha256:721d7c439cfefad8d8eb5b84339a87e88b898fc0840cfd000694016faa129ad4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/fleetconfig-controller@sha256:d2c3d72e190b9084469a6cdd0ed34c867211c5325da8ed52befdf1a4bb7ca6ce
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/fleetconfig-controller@sha256:3b89a6cb738eacb2b783f7999054be6d16a4b031d33659c92081c924916fdfcc
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/fleetconfig-controller@sha256:969e352e6c1cddf34553389288afd14f88a6eee9947e99f04b02a8fe7fadb2c8
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/fleetconfig-controller@sha256:31254eb00cf4d108a0ef83b80831778d66abd90bfd89d7f58da7bd8e83040d93
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/fleetconfig-controller@sha256:a4c6577540924ad04705f6b379f2a0a0917dc2cd5d52a554be5345e2bc6aae80
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/fleetconfig-controller@sha256:1aa35961a582115b9fb0228371a002b027dd92f3528e64f3d8ccc4bd0206dbbd
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/fleetconfig-controller@sha256:22db5b46072037699381a9c7fedda8c678ec25eddcf82b52d3537e0810556f31
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/fleetconfig-controller@sha256:64a154de289bdf8ce68ede40c43a146668caa71ac983c7c027c3d7f5aa6b8bca
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/fleetconfig-controller@sha256:0000446e9bcd33b519daf98f88f430a99898017b252b508e237f330639a77d56
SPDX SBOMhttps://spdx.dev/Documentdhi.io/fleetconfig-controller@sha256:131f125b9713275f57a20565392e696fde411e35872db6c5e1e7310748acc730