Sign inSign up
NetBox

dhi.io/netbox

NetBox 4.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

4-debian-fips-dev, 4-debian13-fips-dev, 4-fips-dev, 4.7-debian-fips-dev, 4.7-debian13-fips-dev, 4.7-fips-dev, 4.7.1-debian-fips-dev, 4.7.1-debian13-fips-dev, 4.7.1-fips-dev

Index digest:

sha256:9fecbc6cf10acce6c47038c9b40b28c5c247a2ac7e67a9cbd2ed3b9c1c2372b4

Manifest digest:

sha256:c2eb53f1595931c69ad57794c533c45e56c406e72392f35a6ef8dc1789f80126

Size

129.06 MB

Last pushed

18 hours ago

Vulnerabilities

0
0
3
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/netbox:4-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/netbox:4-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/netbox@sha256:1b7340952d25d532a016f72aad70f61f28f1e91a63d113a26621202058789e21
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/netbox@sha256:adf655f7f27eb3941b0b5f8ec4302597af28e35ac14c563462ac013fc399d633
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/netbox@sha256:4f5d1077ff0550380633d6deb6f5c54e73939c5119044b8bda3181c89eb9fdb4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/netbox@sha256:8d869fc29cbab530fc692a289fa0a210be6567df864333a1fd7cd489d9701b38
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/netbox@sha256:7cb9bafdd9224c960fdb2bf7cca28cd37f20e4ad8e7a4d64b65a1268a0984948
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/netbox@sha256:c6e6584c7dc8cb7e079cd788223e9d4dbdcf9cfbb6e47c697378370d245dc3c6
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/netbox@sha256:c049fb50b6fb62047c372ea51033f0bfc8efb7ea46cda8341555cfb23182294d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/netbox@sha256:96665b15e0571b739acc4e77d8dfe7992a4af4551aa8e615ac19fd296500b721
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/netbox@sha256:ee0c7e2e568131fc014c228a5580294966c5a31dfc3f7c56247a284d044004e2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/netbox@sha256:1df7498de01b4e98718d742478301db7aea47a1739a64a0bbeb553adaca6c1f8
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/netbox@sha256:422bf6757c3cff4ef0a62fb14937da8ebc0506e0376b4a16569c9ba4dc5cbdec
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/netbox@sha256:ecaf837821a4673f2c9d6d5badbcf7e2926b2a372988d1b141bdc2da9ad43d80
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/netbox@sha256:264242fa9475902d7dda78091e252069d08b9e252d3263477bfe5c9c23dbd81c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/netbox@sha256:da092235687a5fe36151b0768149d9970f2d81901ce32874688683e5f086a8b1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/netbox@sha256:a736b468c9884e75376a3614af16e63a7b64cdb85d7da97cd474f42ff358ae9b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/netbox@sha256:3932462d35573929751f19291f4f394be5d49902c0014251751662db6548cf2f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/netbox@sha256:1bbcf870ad802fd00f474a4e7c6b48b1a01b592ba553e7358d7f5c0360002d6c