Sign inSign up
Virt Handler

dhi.io/virt-handler

Virt Handler 1.6.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.6-debian-fips-dev, 1.6-debian13-fips-dev, 1.6-fips-dev, 1.6.6-debian-fips-dev, 1.6.6-debian13-fips-dev, 1.6.6-fips-dev

Index digest:

sha256:2ed07b5168bcb48faf17cedf6e308d104012883924e0ed358350e15a7648cbed

Manifest digest:

sha256:38ef30fa9aa49399843ca3d935da0fd7ba135e97992a5f9994a6f5f9d4ce1caa

Size

71.59 MB

Last pushed

9 hours ago

Vulnerabilities

0
0
3
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/virt-handler:1.6-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/virt-handler:1.6-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/virt-handler@sha256:4509ca2f86d6b0bf03d6f9cebb2ce3b76d8999d854d6c760938473bdc0a40de8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/virt-handler@sha256:8873442b8aa1284b36fdd68e1a5daf2d6e9050d5631eb14f563e829e1c26c90f
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/virt-handler@sha256:15cc76d48d0dc4b8f24ead2a964caaecf6da890c14f6b5006a8b1f2ff6f1551c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/virt-handler@sha256:12b7be6c0d1333f0953949ca2bba8af2b91703595f8f0b234a74f05f2a0670b7
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/virt-handler@sha256:79cf35aaac477cbf40437f5db0e4045455f8a50ce1c18c2c85d7fa574532f0ae
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/virt-handler@sha256:0799df1a6c86ee6b97643bc36b0747e4f13e90a91e6809a0f805f8e8e3e5fd79
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/virt-handler@sha256:9a940aea0f250111cc2243631b4eff3012a89bb3f4a5d459a391d3ff14a21657
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/virt-handler@sha256:5ec93b480778a0e4aad0d42a9d8057615e591aa61671e64116af349db7cf6bc5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/virt-handler@sha256:06fcd2ce6d5a71d9a97768ccacf94a17b3f4666050b85f543d9bfb56b158e23e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/virt-handler@sha256:859917077d084d09a47c39946be579064c94cc8995b1cd6b9720fa599d6bdab5
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/virt-handler@sha256:7d811679b0d6c487a60858b07bae0b356d578a74cefc32a9e96739b4977fcee4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/virt-handler@sha256:27b54956f0e56ab97fe99d0dcdd55ce073b09a8e31c04d7b197aabbb946c381e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/virt-handler@sha256:974283b1b5827aaa2f345791bc6f27fe7fde37c9e1049833244c71119819a121
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/virt-handler@sha256:23e0ee4839a030c13e7f9ed789fc3eb2d5085ef3e8a98e4afd3a548fff0ee3f4
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/virt-handler@sha256:92cb52078e04be9da7ef829f443c3806d39786f5dc7be9718bbdb9a7631eeffb
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/virt-handler@sha256:310ac8ff533299b6d4aa5b7b093a3d97da49b14582660fa5ca4e0f45286641d3
SPDX SBOMhttps://spdx.dev/Documentdhi.io/virt-handler@sha256:7d8c5163ff7d03353b8e6c092197505373f4f834e567b0cfbae685299893cd7b