Sign inSign up
NVFlare

dhi.io/nvflare

NVFlare 2.9.x (dev)

CIS
linux/amd64
debian 13
Tags:

2-debian-dev, 2-debian13-dev, 2-dev, 2.9-debian-dev, 2.9-debian13-dev, 2.9-dev, 2.9.0-debian-dev, 2.9.0-debian13-dev, 2.9.0-dev

Index digest:

sha256:c07b0ad5b9f8db7b1216237b043724887ae9e24deb2552f7209786d31b343ee0

Manifest digest:

sha256:1243a21fa0f834b90977c0eda5bc9896640a82923221864e534cdf459d2a34c5

Size

67.32 MB

Last pushed

58 minutes ago

Vulnerabilities

0
0
0
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/nvflare:2-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/nvflare:2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/nvflare@sha256:68f20d9497b8ed180231ee326628371efdad85c12d480ea5b10da46212325ecf
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/nvflare@sha256:0d48d9f64acdb1a5564ba14d8fcabd37fe466719bc07e228c520d6199263b3de
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/nvflare@sha256:69f5752af32739c52d42af4c538bc2c6811e5a00523e531abf0571d161dc3407
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/nvflare@sha256:047bd1dfdd3f091fff881996fce4b8722002cf48283f12d689058a7985b1b80e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/nvflare@sha256:7538b7977ff77be57f95d3ff256adf45ea47bac335f08a3fc0f03d57ac04e0c2
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/nvflare@sha256:b22eb9c9341771986f88823c729663abe8960a167356c1150acbc55c0a9b18eb
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/nvflare@sha256:13c42dedc9b160db8ead81c6ac072698ed755dd9544d3a553ebb3b4acb9d4ba2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/nvflare@sha256:9d8baaa52778456322a3e98ba53f48704380ed90127b11de7b52764fbcd76cb1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/nvflare@sha256:4169e27269c5e3ab0d1360debddb9ad810216c3a23a0da1aa7bb82abc4d92eac
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/nvflare@sha256:3dffa678acc69b3b836fdb6ac258565423ee9de1804918aa5bf60309045f9d41
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/nvflare@sha256:a2821b917231df8ade71e0df4afea2d8eddc6d25a63774a8ee928ec1553f5e82
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/nvflare@sha256:b3d3dd6c054e9aad08ab580ab8161b2468118411713753ff32d27cdd2f991f2e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/nvflare@sha256:3dacc1c32129441bf05b6a3115f52e8ab1f6c228fadeca07535ba3f4102be765
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/nvflare@sha256:fd0301010028eeb2b88685d9d714d51f98dc214f0de89d50bd3cb7bae5b6a5cf
SPDX SBOMhttps://spdx.dev/Documentdhi.io/nvflare@sha256:cb03de24e687daf124c5bf416750069d666a16817e76bae7e89a30807e3a5d30