Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 8.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

8-alpine3.23-fips-dev, 8.0-alpine3.23-fips-dev, 8.0.31-alpine3.23-fips-dev

Index digest:

sha256:726f0106e622e5b663121b0bf397c9dfa1e7eb1ae22a7986bfbec60cfba54dcd

Manifest digest:

sha256:0d08ef44b27dccd201b5c2c076978cb344f2262b0c64856fd0adc32d7a191be7

Size

56.53 MB

Last pushed

15 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:8-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:8-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:976de6bbe7e986b55d41ba7308dd69178ae9e0a0644ce63b4efd897d1129d266
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:7efc0bfb412a62d70a55f8360281374efb8bc42fc2ed0b4496b41d43ea1be447
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:6dbb2f3c5ad7f7eaf3448cf78421cb342e8bec46b9d5ce7dc575911a6bb0c5e6
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:55c523f192d523620d11df480e5e1369db0ee184ec86e4c998055867d5a03798
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:15f16fc71424ead242fde7b87a58a3efd9824f0ecc68902cb0e942c2793cb934
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:785608bdfb242faf3c465e6ef7241d6b31186dc4d01281f6c1a9b67f7119f9f0
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:7e076fa97a2531c721a9b709e1785665a1ceb5e69c5e26fe0cec85dc7ca2c049
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:d4fd00d0b7afb8d24ee6ce751fc288f14f057d47af101bc770d4ba40c0546caf
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:bf2adb53114cb3c0018f18f912e585ff9846bbcc3edcd35608a5cd0ddacff6b6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:fa1efd99d7d31935499a137dd33f71695334909a0200aca32c301b031c981a47
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:e53bc1f79af4e3cb0cc3d519f0993a57ee142c64fc58bf8432c5d12ef42dd300
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:75514193340eb1eb36c66c90e38d1df91bdb410bb30ed3541c736c568e29df6c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:f67fd53cea0c2431f483dec7a746c370a9560ba8ae33eda4dc394f0d49c83732
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:25b4bf4012386968e38f6eb512834249e90fc7ea881a2c1fd3e7721e1985708d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:fc1d0ddc1bd6074b6fea4405c9cf09241b7e39f4e9ffc1596ac7493230f65523
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:2dda1af99da378b60eeeffa2f438c70d8831e41bc9f5120362c8cb524a85c527