dhi.io/virt-handler
1.7-debian-fips, 1.7-debian13-fips, 1.7-fips, 1.7.4-debian-fips, 1.7.4-debian13-fips, 1.7.4-fips
sha256:0d2ef683cd36a83775deb782f7ee7b70ad9c09b5d1ebaac030d8db22e11b0b53
Manifest digest:sha256:fedc7c0300b27aeee22fda9b5e213cc6b1925f34295c5f88aaccca69f3fd7379
Size
44.60 MB
Last pushed
2 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/virt-handler:1.7-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/virt-handler:1.7-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/virt-handler@sha256:eab76e65cbd69ccab5c9fa8741a7c141b2db0af9a1d20a954ed23560346505ac |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/virt-handler@sha256:1e40b325ef824bfe4984a1993be61dd82948641bf3b85de6e586f5e223cdee06 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/virt-handler@sha256:96b429d19c65916fcca23cc09e7cf0e86dee535b7fe1ab9ff7a141da2adc005b |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/virt-handler@sha256:5fac9ecbd738a17beb00e37423181b9d34e2d0c8f60b1dc24efa7a1004e62a95 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/virt-handler@sha256:401c9514f4969f763fabedcd48bb6e2b03ae3ac8c0e39f0c099516967ad5ae9f |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/virt-handler@sha256:08775ff5720cecc13507a897aac17c023c3dbe0a08cc07f2ed7dc2dab6dbc611 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/virt-handler@sha256:09d2746b9c7d521213f97ef58d8debcfa896795528bbeda29446866329a02d21 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/virt-handler@sha256:0c43bfc42757821c1146d8d60f8aace7131016454f3f0f2aa43d9ac7e6a1e61b |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/virt-handler@sha256:76ba8fd28f065c151d960c19653d30dd8786bd7c11468765b8821d2a4e523a66 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/virt-handler@sha256:ecad7c4f76ad975fc6c7692684d6377363a912ae1e8680fadd098572fb97f14b |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/virt-handler@sha256:fd1dc54a136c5be687a859ca661133c7fd2ab857a80642a5afd008cce9af3558 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/virt-handler@sha256:c6114fe126cee8e06183e50ab90b8056d2c0fee0c4420188820400e60f77bf9b |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/virt-handler@sha256:ffab1eebd7a18b7e5360204da463ec029892a2c1ff3c41c0f479e78f9b2e821c |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/virt-handler@sha256:78bf61411a602066721ad4c2c03fabf66af3089c2445667bec9bc7971885b9a7 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/virt-handler@sha256:614e19ed93af2ca9e15802426947e3c9243f7c8d15f0f34691f8e5c8cc0dc439 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/virt-handler@sha256:22dec4521fd7794bd6413fcfdb150ffbaf96074d9a234cff07fb9469b8b9d09e |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/virt-handler@sha256:2032e1672d3e668cb1065f1fc71a135ceda754f511df9fd668c4d30d466594e7 |