Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 10.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

10-alpine3.23-fips, 10.0-alpine3.23-fips, 10.0.10-alpine3.23-fips

Index digest:

sha256:86140a7cd326d8633e4681baa6adf8fbc90ac27d79446ce0dad0fd2ad3712e0f

Manifest digest:

sha256:6e2115b1be24c185a90abb3b5dd30c3c5840252087572747bc9fefe610027380

Size

54.56 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:10-alpine3.23-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:10-alpine3.23-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:a15ed8c93d28ea3252d766d0cc0b56665c5b457ff4fd27ca2506cd7176879831
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:59b855dea191bc6fc2a6ab4ce3281c1ec797757648c16a4e0b1ebc0b598fd745
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:31611dcf33a39ce4c5c4b124ac692310ff2a3026bbd4d117b6471987a0a939fd
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:84d17de37122f67c4e245699b231411d895bb62b7d13533a2305bbc85da36d3f
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:69db063291a179457d47b3d559e695b7add17631503c1a02c5f60261970413a5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:24cc8d954ef145e990e39db7db0aeb14ecf414e8f005e19314433bd3715f3d4a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:d7c33a772950504cf3c1c7faa53ddb14768121cfc39ce5b946dcc3e2c06d3fd6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:9b40333839b353d1fd4f1847436cce7c170c8169938c3ce53efd0433050db7e3
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:38f8e19055b72e67dd383a28c34dd8d734cc4828e4e8ce1dcfe5f5ed88c4378a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:ee3966926b72d35691447b419439543f353a22602c5f27739ab8b99c72a45013
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:2318c017aa49819296af8dce5ae9a5f364215f572671471f0ada75b698e6f42d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:e1612f6219ad70d4b77295757ab870d60379fd2203bcdb94aa0209925fade53a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:d4de92595e46f3e60e53715f9af04bbfae935ba196ba81226522ba967d3ad8df
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:2ddea397bbdf645702a720bd38b566804a163bef669676e4c2b89bad5dfec78a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:b8b4fcc7a6134f11f92614462e2ed80afdc4cb6371733f4771add5338ca3fefa
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:8112968268eed8fc8ee2701b6edd914a2a702ee81cc9747a673f8d110bdf81a7