Sign inSign up
Temporal Server

dhi.io/temporalio-server

Temporal Server 1.28.x

CIS
linux/amd64
debian 13
Tags:

1.28, 1.28-debian, 1.28-debian13, 1.28.4, 1.28.4-cli-1.8.3, 1.28.4-cli-1.8.3-debian, 1.28.4-cli-1.8.3-debian13, 1.28.4-debian, 1.28.4-debian13

Index digest:

sha256:b30c7fca41a835681ebcb6e883203a19886281698e6a32fff1f7c9e23870a5a9

Manifest digest:

sha256:b4ed9d8d78bebe259a1f8b50beb534ec7ad66f1bbe8f428be02b5e561baa146e

Size

108.33 MB

Last pushed

11 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/temporalio-server:1.28

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/temporalio-server:1.28 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/temporalio-server@sha256:eddab94d7148060580a992e69b5dae275744addaf506ee269ee28c06d7b730df
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/temporalio-server@sha256:a77dba4dcfc07681c26a47ce8031e0c49f3392df0422676bf346f3e9a5982b14
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/temporalio-server@sha256:ce76e18e8a1a8616bfa0a74af760b33a97dabebc25337965572957854cc08de8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/temporalio-server@sha256:342a1d4fc5c40fbea2acdcabd1c0e5ba112c5c5692b4fbc8d3691f005ac1891f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/temporalio-server@sha256:bf94b801bcf20cc384907d85a8be3d00fdda790fc4f6800a9d498258721e90bf
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/temporalio-server@sha256:0c4bfbe82f14605fdb71ee1243e56b8d042acc4b54555d6858a539f4090908b6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/temporalio-server@sha256:6b6ff88a2e02bbc10bfe40f0d4425550304bf0bbf7fa3e9a7b9021c53713d018
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/temporalio-server@sha256:5699b92292a0fda34a627d8bfe955a8615ae207e4fe25009682ac174d12632a4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/temporalio-server@sha256:e6e215c88825b28ae1645cefa01c18d05da5b172188bbb1db5cbb838bd0d022a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/temporalio-server@sha256:851a3a37e825553306bef2ff9a3328383efa12390be7af123c26cfd489be7b2a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/temporalio-server@sha256:9d22d264e5e318d3ca7689d1d60ba3d77b6550159797e99ae463603c371b10c9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/temporalio-server@sha256:d175016f19338e5f0619ae964781fe07e9457f04a90fd4866341266be04f0dca
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/temporalio-server@sha256:91f76ec98b1b50550acf9a78c5d4f827769b10c90779b3f2c2dca215eec6d6b1
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/temporalio-server@sha256:bc9cb004382969d117d165552e68168883c9cc092605bb6e72288af8656f8524
SPDX SBOMhttps://spdx.dev/Documentdhi.io/temporalio-server@sha256:499940e75c357a02a5c935263a6e25ebb9b0b63f198aa78b862de7472d5e732f