Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

10-alpine3.23-fips-dev, 10.0-alpine3.23-fips-dev, 10.0.10-alpine3.23-fips-dev

Index digest:

sha256:14f0df6718539fb2141d161263c0d6aa51c93d95b5233926714e41cd9b3dfde6

Manifest digest:

sha256:2a0560ef14c5717b09e172386f24083cc322eb38e448eeea002689fcb9382807

Size

58.48 MB

Last pushed

9 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:10-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:10-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:0ccaab892816d920ca30b6ddb3c10139af7f278afb2d7130b2cce335ae4ff550
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:a11120dd7d8c62c3ddf7ec4165beb5080e04b85d8b3399770c6349889859efc1
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:5654aa236fa6cb0405231e22386df6fc377c3f390963f6a005eec774fc943a63
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:f61b172d84185fcd0c4ed8d452eb2348e207c0adca8e3edcd4d97440fc083992
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:8730f00c1a14de3485caf403e558ce03e7bbfc69e99ace0553aff9647eca39c0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:3fdc678ea2e51c40bb7584ad02be15f9fc2f364827ff0dd7db1be724566f960d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:3b90ad441b101d974ad3f110c72eda8a3def5c1b62666440e0e1114581ea0272
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:0ce1cab98b99f06744c967f4893bb400382d64e4c4338c80157323afe3b77da4
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:359aa8f07943f3ec474894beb68955495dc214dde37a7f8f2178c9178fd4a3db
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:d9d593189e0cfbae0240ea67d14954ab413f8eb33e54d38dc990f0286e65ce14
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:f3f38fb9affc43ed918b53d497732fac9cd95e5fbc165e6e45602484aeffda45
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:b2b3ecee7837116bb44fed6254bb7ad36ac1e4e590301a1dd2f7a77cc98c6f3c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:8110280f02be07b004d717a0f8afe1fb3801475560864604fc1b0ff132a806e3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:e979c2f430338b7f695e09f32094be03e1e3466670d75b6fd6dccda01a8db7cb
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:17fa909bea657291cf6801a534c052782b6d538330a531f5e0b34b0ecb3600f9
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:19d9b5893e01cbd2f6fe968dd01bb37b965cca9492aaa2f20949331271e305ac