Sign inSign up
RabbitMQ

dhi.io/rabbitmq

RabbitMQ 4.3.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

4-debian-fips-dev, 4-debian13-fips-dev, 4-fips-dev, 4.3-debian-fips-dev, 4.3-debian13-fips-dev, 4.3-fips-dev, 4.3.6-debian-fips-dev, 4.3.6-debian13-fips-dev, 4.3.6-fips-dev

Index digest:

sha256:3a5ea9570d4e7e90d996bac7a52eec82511def6968ecb10744c2d3d29916848e

Manifest digest:

sha256:442c084ca7ed7cdf4828ba43e9c6e9f89614708d111c38ccd0adae681bb15fb6

Size

100.53 MB

Last pushed

6 hours ago

Vulnerabilities

0
1
0
13
0

Support

Ends Jul 2026

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rabbitmq:4-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rabbitmq:4-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rabbitmq@sha256:40f6c9e4f19bfffee2a3fc1a756cc8b1b801922b7ee7e3eb72b77b2e8e4977a6
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rabbitmq@sha256:737e21b655c827f9bf86a65cedc821e1d2d34fc5b5e488fe54bd396e64ea6615
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/rabbitmq@sha256:bdfc77c58bd18a1bdde8fad08f9bcb6edd7e0f735349d2c9e8ba66ce9e5258f2
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rabbitmq@sha256:17ed0bdefe4a5676d7767fc5ac58eca6e6e9fd5c5962908af70a925ed2dc716e
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/rabbitmq@sha256:982527980faab279e81b0895568b8de9e1c65beea70aac7dc3f2bc3582453b33
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rabbitmq@sha256:de5b2b00fa00a54b4d874ed06da66c0d647ebd70cf89762d5c7392e3a7c61f1d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rabbitmq@sha256:4269febbc6f87cd6f437de5a383301a602269364a42017fdd82387bfa7382199
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rabbitmq@sha256:e526eac9d57a9d2853bc3d30c9e4a23851f194e113ab7099d50bb836ba7bc6ec
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rabbitmq@sha256:08cdaf5699fc82751566f7bd62c389daa4448af09a8f4e668d849d231b8f02d5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rabbitmq@sha256:33f495da2068ff17e335dc5f47bfc940e2c5ef73ee5abf9e7cb19dcdeb745817
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rabbitmq@sha256:a598f8688d3951d66ac5b70ae372b9f5169810bc48e64aa6df9131f95a30f585
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rabbitmq@sha256:3d5e8e2adf216ff5936fba727fec02b7fea38b54ddc0fdf3a8d6f44431c68bd3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rabbitmq@sha256:5b12760c7ec00cc610828779e5c95dfd26aa4f497153937d686ec2b795e28e46
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rabbitmq@sha256:1873fa1b4d7dea870baad22a2efc3e816b0c8ac640e74246189bd1c0704e6798
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rabbitmq@sha256:8f2f4d6b0b43b6c3119808236a92cc310af6f2cb38c8b95888d7abf2e257559e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rabbitmq@sha256:ddd4c38fe9bac951a9d8f0e983d7a901f581a85b9d9aa6437c10c42c576a6645
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rabbitmq@sha256:89c4edd27c67080fbabb9c06c48b24fd9542ad633b376efbd8848c3bec5ea62a