Sign inSign up
Airflow

dhi.io/airflow

Airflow 3.x (compat, fips)

CIS
FIPS
STIG
linux/arm64
debian 13
Tags:

3-compat-fips, 3-debian-compat-fips, 3-debian13-compat-fips, 3-python3.13-compat-fips, 3-python3.13-debian-compat-fips, 3-python3.13-debian13-compat-fips, 3.3-compat-fips, 3.3-debian-compat-fips, 3.3-debian13-compat-fips, 3.3-python3.13-compat-fips, 3.3-python3.13-debian-compat-fips, 3.3-python3.13-debian13-compat-fips, 3.3.1-compat-fips, 3.3.1-debian-compat-fips, 3.3.1-debian13-compat-fips, 3.3.1-python3.13-compat-fips, 3.3.1-python3.13-debian-compat-fips, 3.3.1-python3.13-debian13-compat-fips

Index digest:

sha256:a3b2d3edf8d253454b99ae07dc95cc371895dd7c29f2bc8ca44573fab3a872ad

Manifest digest:

sha256:18a55d087c134fedd3e53eaf209dc4167cb823c1e99fccf51b0c86e784d523c4

Size

372.35 MB

Last pushed

8 hours ago

Vulnerabilities

0
0
4
1
6

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/airflow:3-compat-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/airflow:3-compat-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/airflow@sha256:da7b61361438672591305a30726b054432c475a85624beb26ec6fcff9cdadff0
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/airflow@sha256:16bfd6bf722cfc86a6dfbb3fe9939f22ea04d84af81e466bff42e1bb37a1fce3
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/airflow@sha256:af43761a476dd69ff46ede1e20aa3c063910c16c666a2a7a65a8f6059933a914
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/airflow@sha256:d8dfd15b4932905f6d2858f6845fbceb9c6a8d551e98aeb0d0636ab4d5944268
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/airflow@sha256:27f922c633a6772ef83df37e9686c67f583ad0070c74b0524119c618037799fd
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/airflow@sha256:a5906e93fd25ed639ddcee3fd2cb9fe900ed317cf0ae81bfac736836fbe98563
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/airflow@sha256:3ed50aa2574c551ee45266549afafc6f0b8f6a68257a4bd3d59b7034f000cf2c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/airflow@sha256:04c81c600bdf595b75c981319e6c320802880865f6705d3d820b240c61a727d5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/airflow@sha256:1c3ad95d5047c864af0779369675c69fb650fb4bc78fa1b88bc82843e6bd705a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/airflow@sha256:21c6767246b03fe39f77eb9207b0f5612f141fa8dcb8a3a6fd271fa4e31c8b86
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/airflow@sha256:aa4be985ed66d499e4deed19252debd7ddd77c9a84972ea230a1657bba4a1de3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/airflow@sha256:d819cc1e7049941ec94c6e11a707f5fa1abaf4934a4b8b5a8972e2837f16a5c8
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/airflow@sha256:53d868e88d45420349a077566d6b22bb5e5bad06532b2eeaeccc54d01e07a1ae
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/airflow@sha256:d4d2c186aa8422304f76edbb7179ea8f5b6adc176708a8d54ed5e8bfec5cbcd4
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/airflow@sha256:7336afc5a7855c7a2361fd0a049faab5c673ff97b001bcfd5fe2e007a4dddbe2
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/airflow@sha256:04b139c6069815b32cb41900dabf76f8a4c33d3af6ffa1a93afa8aaf20367263
SPDX SBOMhttps://spdx.dev/Documentdhi.io/airflow@sha256:ece8562712bd6eeddb370c886a391e188a2dd06d8a42f3e589de8fbb710597fa