Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

10-alpine-fips-dev, 10-alpine3.24-fips-dev, 10.0-alpine-fips-dev, 10.0-alpine3.24-fips-dev, 10.0.12-alpine-fips-dev, 10.0.12-alpine3.24-fips-dev

Index digest:

sha256:6877f27b366a0c5ecb76c5a9adc154b8ef2e3e96eed857fdd98ee3cd31d81c2f

Manifest digest:

sha256:5090283e9544a7c9bef6eebf6f03b6743984bb2154abf95b1be99eea4297bf1e

Size

58.90 MB

Last pushed

4 days ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:10-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:10-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:56180175ffc51dac8c1585d01d37b035800c1c5209de34bb52fee9e562270acb
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:ebea972a7caa842a4694bfaf12797325d4d736c3b5ecc3b27b44ad795aed34a7
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:ce5f3dd2ad2233aa2b142559eec276aceb4b0e19d1839c3b9af2fcee1a63c7cb
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:e57f3f320317ca0165ca6dcaf8e22dce147ab0a47a4c7f2fa75dc01f739496bd
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:db4ef26249a740ebd7441682fe4258b904ba428dbe8093e9e0984d7246816a01
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:d27fb930df2aeb92b7352e8fb60a66acdfb575577cd6f37838af16ba47c44fae
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:db54b94601398415f15eba8215db1cc4e3820cd30cb42a16ebb808c9f5e67bdd
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:0dee43dcbf2dc5a79c525083ec0197131e994780b4689b6ca65b5a49b297618e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:bcf5311cbb6884636d8becece20991858b30d5fadbc56a9d1a874e49ede15ad3
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:69b70b9d1a28c4a6ebeaf69d61b0c951da6ecc8ae02edb614bf339f807a89b79
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:b618c8cfcc92f9f46c4a6ac2e0a7c2b6ff1307ba336752262572ce0e6097cb85
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:c7345e5efe2c705c7429f506c8e8cadab29b5e4b93850cd623707319a35be720
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:e62ac7631744215b49992f572d8a8a05971828f81f8f7dc58826ac26153e3bb0
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:1fb10057bb5711abcb4ddb9ab1b86fee73c675ae381c08ddc36ce12552f3b106
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:a94fb58d04dea5d7cf490ae20bcd22b9fa00e3aa6e89447a4a7022ffcde16226
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:daf4c3e620c29333e1ab0e327f40e2298a6b61636aa3731c08f4fecfd00616d7