Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

10-alpine-fips-dev, 10-alpine3.24-fips-dev, 10.0-alpine-fips-dev, 10.0-alpine3.24-fips-dev, 10.0.12-alpine-fips-dev, 10.0.12-alpine3.24-fips-dev

Index digest:

sha256:80eee3eaa339999e0561d85622b26f05a0d59068406dd08c89a99e8be79c2d07

Manifest digest:

sha256:794280f379bd64dca00a047e082e0e8db4290d1eb1f53e46a93d00315ae6c035

Size

58.90 MB

Last pushed

7 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:10-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:10-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:04b6ee332e8eef2b74305f6d6ddbb349259d4f3c063b63ec18e7eba4294280ca
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:2464e880f62f794ac892c7f4859876742aa0e140088a5b99435f5ac8c63db66c
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:6c7f35c6c2c972c8d600b6e921620e71138af9203954a576d313e98e8e1999fe
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:9534cd6a40208284a2130181c8682f4b8103990d8cc8e341cadf0f58678f3eec
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:e5289c6c01d8e1540f00e2b9fad0112acd5c83a45de1da90fc9dd00b3cfb628b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:61057bcc5f6a2838ef959540fc6457bdce423f28f306b893cf38e25db58fac6d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:748474cb8c464b2fb07f725a479b97c4cafcfc4d649f25beff03779be9b06d2b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:56192b308726e649c31f33946f76723e04b762f6f8e2947e8c6121ac11119b38
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:11c559f70de58b5d76f421a4df175b4d7e39a8311d1ec31ffad88582ce4b13c8
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:87719dcb0391090b96b0e695f22f7a69ca1e696de380730f1a1b6866574fa776
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:ebf5292c1262ad78dd271d3d7adc55e8ee4d5878d34093db144cc40e5ec56a69
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:78414bfcf6137fa2f887deae79d6f64ec6db543b5039ef1c04c5b28e3c3f69d9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:d73fc2a98d8eba5439254991a0fb517dac22e88d41a7cce7ddca7042793512ee
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:39c6232552b440c2a71da13a479ecdc8394b9f420288a4b97f3aa28abd7d1f7c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:bd2a96e7f0ca1c5234fad7dd8d1a6505be839a6775d6f31ebed840c93540229b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:b14085a3c520dc2d6ff3dcd04565863a152f1db0bbc48a0a0524161715015bfd