dhi.io/hyperledger-fabric-ca
1, 1-debian, 1-debian13, 1.5, 1.5-debian, 1.5-debian13, 1.5.22, 1.5.22-debian, 1.5.22-debian13
sha256:af4028c7bf1e83064ac53abbd10d8ce350d4589cb9307184e5086d040ed204d0
Manifest digest:sha256:2808a1263cbf8800e0c31900375375804fca78d917f81e8a6acfae03775ad1e8
Size
23.95 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/hyperledger-fabric-ca:12. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/hyperledger-fabric-ca:1 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/hyperledger-fabric-ca@sha256:ed0adde5d4bd56c58a0c6fd07d7febdb88d2b47c358cdc139e32df3d932deeb6 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/hyperledger-fabric-ca@sha256:66d240bfea614767a485d75cc45627515e9e9f438fb632933f5ce01107d5947c |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/hyperledger-fabric-ca@sha256:3494149b65283fdfbcc26d5d83f45d27ff1ae24920f0a82d9f49eea1a7c3bad6 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/hyperledger-fabric-ca@sha256:5bf65a4024b4ebad1ee462b8207afa28838cb31a2df20da88f3fe18b4bc557d8 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/hyperledger-fabric-ca@sha256:e435c87220e9db2a3d015f04152ca1ffda5b9f118f0fbf96e77b6f61db94cd53 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/hyperledger-fabric-ca@sha256:0a2fb4322e5fa3c70937273d69f3af4656d31fb8afcbcd86831f7f7f92f4e65b |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/hyperledger-fabric-ca@sha256:1af8b55cafe7ce450160801a3bf808a7aab6960ea12d43650ef57f0dd9a5a1ca |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/hyperledger-fabric-ca@sha256:a39406300c0a70c78ae43b891cc4c9bf03d895478b82fd44543d0abd79a60cb7 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/hyperledger-fabric-ca@sha256:6ccd675a39a81ca906e0830e81f2fa373749a53f1673a569a86540693482fbcf |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/hyperledger-fabric-ca@sha256:33f6b196545c2afbf03cd1369093e8f4630bdb029df47961fb8e6082a1b71dba |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/hyperledger-fabric-ca@sha256:43af6d30bf652bbcf44c74a24ddbd09f9467da5a1ae16d6bc7ba26db33401270 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/hyperledger-fabric-ca@sha256:2e258061806067cbc77c2a9ccf50f53b7e5a6b8c2a8ad64797426e91c2bd1f36 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/hyperledger-fabric-ca@sha256:6af6d47aace5c48f4a7eb8e631f9a14ae19d682e8f53aad10e7d13ff77f02ae4 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/hyperledger-fabric-ca@sha256:a1c49e89940451e91844ef51682192dbe21a52c306535b596c612e1efc5b888e |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/hyperledger-fabric-ca@sha256:f512875f65d188275ffc6935bb1a1aa13af3699c7706a43170902e581d78f9ff |