Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 10.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

10-alpine-dev, 10-alpine3.24-dev, 10.0-alpine-dev, 10.0-alpine3.24-dev, 10.0.12-alpine-dev, 10.0.12-alpine3.24-dev

Index digest:

sha256:b779ee3139ad45322aaee245c759dd1f4cf148979ab86bc0b3380e0885818e08

Manifest digest:

sha256:6a3303a014efe93ca066a3f625a1a0ac26a88bb7f0e0dd851b795c1c377750f6

Size

57.74 MB

Last pushed

18 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:10-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:10-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:afc2528db3f16feb03a37c1ea2d29afe2a06edb5a5f4f21ced0302db0c0520a7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:6ef89a0bc27d0e18d11d539411caf94bd71a7d8157606e4da07a7aa049184c15
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:352096a3a87a3b38dd51168493b1e1b8e8e5f4ac335037a750351dc579c8cc1d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:4fe77c6303f1ad7a55194f9a66356b6cd603c7d45387b7a3973c450de4d7fa36
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:e530f04647f69549c0fe895c8888bf1478b362c8e37fa98e471f6420ee49f6fd
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:cf4abf6aaa69e4620fc4ef4fc98504b36b16abd3d0a55caea45a9443e0530aca
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:f57648dc531fad9ce7a8aa1eee86c94dc317701986dd6a1cb580dcef769b52d1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:463d81cf53c722cb237d4ba84c4b5fbc57ca6e06c3d477c307f1a325f6992c0d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:e4511f802022cd82f7d611d30e1b3473bf4c603f6a5832cd30a9a2a4f13a03d3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:37cfd807650d7088ba6eaf030be57f4b8bb6d9a0ecd17c3ee902b7caa56b0e88
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:c1189f7cc0d88a6f6873bdb4cffa5afc82359bc0e88b6c9e1dadc1ab5076271b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:6ffdb4bdbcb88529acd0982e34053e71e30a074dd955066c72f0cd84cff3cddb
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:d83f303eef47c349b30e9aa3bc302138d70af1b720359f85eb9563698b3bdd56
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:c3a9fd5ff6e2f23ac8d863cc80dff1a8609bef968853d43e77e8c8a44649cc29