Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

10-debian-fips-dev, 10-debian13-fips-dev, 10-fips-dev, 10.0-debian-fips-dev, 10.0-debian13-fips-dev, 10.0-fips-dev, 10.0.12-debian-fips-dev, 10.0.12-debian13-fips-dev, 10.0.12-fips-dev

Index digest:

sha256:56270c90fa1de89872ba4e4d4571353326a9f9198d8f375f09f4424340a24721

Manifest digest:

sha256:8387742b450643dc1a73b18e2e41019adabbfbcc9ced6e1335bb8c561f8dd5a9

Size

77.22 MB

Last pushed

17 hours ago

Vulnerabilities

0
1
0
1
0

Support

Active until Nov 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:10-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:10-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:30d542dc3ef6251b639b959856097de8671fc27cf25ff8bab40f769ebb6ede83
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:6d7fbed01a64e94864efeb58136bf7a7e012cc446d35068f25859d9db44c27bd
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:df3a10120aefa70001646509b8189e6e83ae4d0d1b20b80ec123499754947d6c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:01bbee347eded099c5cc26ce2d1e5aa3986900a90fcf7a2f77d4abc92fccb9c4
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:a20fcfa25ac399d0562d321732be7e1b15167c4afb06415427da98e5e3c9f202
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:74dcc72c081f10a4ad481d4da50219ed21f381907909826eb055e60540450706
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/aspnetcore@sha256:a138b0f9463f82a96dfb033fd35b6257d4319d1fd40d80c3053e84a8c34b229d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:7c5045a4699db4b100d8537b2931e301961ca114509a80a0957de2cf81458b4a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:17291ad53187facdff150b060e73835b00f30286ca4ec29aaf48858cb420337c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:069bbc1d46da319931522504d562c5f27a1bef463f1d8e6a83b5d6b837b443d0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:1d4f8d4bcfa85ced36d396a22f0a355420fcf9500634ddfb14894fd85168b35f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:d840a426ce4dd91b87650e3be71a3d93da610672131765ca091e3c8dded159fe
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:84d2d9a4556f7a20b744fda4274ecf17eb0500e4da6b721004b6ce3a7bac8a58
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:5ec2fba9b3ff5279579e81a08ba1eda7b1c7706fff9a4c7406345027af6a7bd2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:411516154b3ca639386cc8483133d77277e54e864f8acb83d2f2341a075c99f1
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:dc325031a5070e1ce5e5c0e37996748bd373fc6b4031fc17ca4aa05059c40a7a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:5f8a047f7330926e453b507569926519854a444aca692514cc8b41aebb5265e9