Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

10-alpine-fips-dev, 10-alpine3.24-fips-dev, 10.0-alpine-fips-dev, 10.0-alpine3.24-fips-dev, 10.0.12-alpine-fips-dev, 10.0.12-alpine3.24-fips-dev

Index digest:

sha256:437b91a2686c31689e6b761cd41b92189bc267c0228b31e0e348346939f2f52a

Manifest digest:

sha256:7113abccab0b3a53297c8f73f3498ab46c6e2e21f3b27dc8d7998c80d83c575d

Size

58.90 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:10-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:10-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:e45c943a5e7007d9b08feb9070d1493f08495b3761eef48b82c7800f61882a40
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:be21c3d2a2efd0e0a7c90905501e7feecc5f426f1e9cdbed73ed1b7331f42b26
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:871fd1bd6200472a7bdbe100f2b8156b011603766ceba46b7d173d41edebd6de
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:7837bb383d888021e2f9cfca6b11efa0f77af543f981861c359a76e8f57225c9
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:d6a9502cfff1e5bd9a665c520b2fbba948c0670a5ec29fb2a2f6105202b0a503
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:869d5845a3af32ae1b211bacf3119ee61d1ec20fe0b60e6c9b259218ac675b94
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:d72be5537f0f6ea469eac9a704b395583ff066970c059f77a04595fe8886e6b6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:2a69b4040005767088e844e14761014715a1fc8a3a1d917e36efd9ae4363ece9
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:684fbd5b7772d6eac5d783af21d4d05baff7e87067e6f15358464ce428fc2ecb
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:324c1fea82b72a13ff44e3ca80223f70249c6a6b767c12a73b4bd0a147750241
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:7de2a9e4bf9d9fbb47f8cca9b3efac0abe7b656b5bd115a274db9cff628aa5d2
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:fc60bcaac3cb75c01c8b0c50d113f3e3a2b6454ea26da5504e676d1e62dad4fb
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:33dac962c97e9da269bf7cb6de7476f0589e2c4402340d83c19e8c5d721b7c54
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:45b0ac549ab2f46cf61968706fa2f7d2a0361aac47f4c674965a4733cbc28fd5
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:a981e26ed59db4f0487b74551c20380fc286c14bee6df0d99926e6c54a615017
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:16deb6480880c22fdc4fbe57c3ec0ab297a36e0845fd07dfdff0310247a14705