Sign inSign up
Virt Export Server

dhi.io/virt-exportserver

Virt Export Server 1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.8-debian-fips, 1.8-debian13-fips, 1.8-fips, 1.8.4-debian-fips, 1.8.4-debian13-fips, 1.8.4-fips

Index digest:

sha256:487852d0203f6a9457824628230a5c37144d1d07d732dfe48f28935b7aee3197

Manifest digest:

sha256:9d7fa185fb11a97e857431be449f2ad95ff63cc276fe566c680e3d5c88a013b9

Size

22.62 MB

Last pushed

8 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/virt-exportserver:1.8-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/virt-exportserver:1.8-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/virt-exportserver@sha256:f1b45cef671d21cea28e184bfa647ae0470babfeb1442cb502d82ee892a1d641
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/virt-exportserver@sha256:523aad8ca56101b7ebe2f8b528a9990f35d3bd1719bad05bb3b3007a16a28d34
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/virt-exportserver@sha256:3e3da21fd34de3e5f238b414d996bc918b0de475d9650b88f32fcee096dee7c3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/virt-exportserver@sha256:4e1098acd073e362ef75e09baa966e0651609a2376a917f6c100151c5ae7ae50
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/virt-exportserver@sha256:65237d2352a8b139443fc05ed54de7c17c9192775fd8cf18f2bc7195c53a2480
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/virt-exportserver@sha256:cfb7f33eb5f317033e621f4851f42efb8dbb0457ecc5375f97904f0ce5897af9
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/virt-exportserver@sha256:ec64bad58fca03590f8ac55ec41819d293f3fb0609f24ed1fda6986163f45f1b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/virt-exportserver@sha256:4a0762a906c7e700cbc6fb8a1719bf9c653eca1a116beae4f84e256a8b3522ca
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/virt-exportserver@sha256:24d646507d041dd128db7f34d74b763a24cfde18c28bdfd3ab679e0bd41cd3d0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/virt-exportserver@sha256:35106912c3a1b1fd8204f5da83557ade6ad02e24af323bb1dc01aae2f9f68d0d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/virt-exportserver@sha256:4e15f8abcd6a6cc453d12e31e3f0c4e51ff15b1ea56248257ca4e0bbf379dc71
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/virt-exportserver@sha256:a3cbf3c4a6d87394b365f3a198814a310bc34da2c2da83f70624e4e6cf1a5225
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/virt-exportserver@sha256:6df1206e7f5b66adc4fb30493730a53735676d6a0d2bd8646fc9822a1ad2030f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/virt-exportserver@sha256:79d5d6380df7045f42b7a6775d02973ac29f9a4c626ff3a5ee3420e2f418dd44
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/virt-exportserver@sha256:7403d292ad6b41c137ad0bcc45086b7807035831a62a3ca5b405ced3b468dc24
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/virt-exportserver@sha256:99d1f3cb920e7986fbd74214a16d728de8a86a20fad491d49a8655fd9d58dfe9
SPDX SBOMhttps://spdx.dev/Documentdhi.io/virt-exportserver@sha256:a61a70bb5fea9c4fab5743318981bce8b2e09d16fab49b61285f898bb9e2663d