Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

10-debian-fips-dev, 10-debian13-fips-dev, 10-fips-dev, 10.0-debian-fips-dev, 10.0-debian13-fips-dev, 10.0-fips-dev, 10.0.12-debian-fips-dev, 10.0.12-debian13-fips-dev, 10.0.12-fips-dev

Index digest:

sha256:f47eb77b2c7494bd55c18dfd7d285256cbf91da049a241545cfe6a74e8f31b4f

Manifest digest:

sha256:b3e00477c53bd8f43f5f211d3f37e5d11a5f0030f456ecb8bae136dab0899250

Size

77.22 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
1
0

Support

Active until Nov 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:10-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:10-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:d7b10351dbbf089679fc9724a6fde1a9aee6ec8609d25b1a16b5c91ab5abee26
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:b2b92581b3afc0cc2eb9de9e1cc27e2c48acd9a132acf3236dc08eba4328ae40
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:2696808cb1c27a5d56b3ea5fdae8f3a668da13d6f4f57c0f56a6dd0bfeec3e30
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:e0dc53c9d6f1e8cdd88dc5db4c59d18deb36889ee8c689e1c74ff7f1d1f9e2c0
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:499f4e32e4773327177606ca15a6d31711f215c961efc14b06e2fd3790363f97
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:76fdc51157a375b4e3be67ad9ca0ea72d2209b07bea8b9dec19d6f14a2567076
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/aspnetcore@sha256:62560a5dc4fc1a95d4a4b90d39ad661f858933b5b48237f8934a392924030306
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:499442089336ee2cf3eb2c8e930368443d9c2cef7dbb15a658446428e62e8e42
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:097dc7fd7c23ab4325167bb6c2cc6fd205f3e1c73186c53d9174c4865dc763d1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:8dee596de5e859df7c1437f8882d2e82183ccf41331a29be97546eebf4794f84
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:d9f61d12e5b254f305f9122103bbcdb836ffed209a6cd3923aceeaa78213ec2f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:87cef52f7c93eaf8e5a681538133aa2e629a7479c26718d0e414a793cfaf00ca
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:1d368ec729c0b504b251741cc23266ae34555e8790c18316f1b2400bcb273e80
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:d68a498a7fd0bb84ef08d4aa5bcd880282f58077260ef9a77c2385acee2a8068
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:1aab71d1a1ecdf7dbaedaefbfb8a86b82f642cc21852664c34b793d2f5c666ea
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:9c8cdc1f62c146bc7b149f29297029e39423d86c19f69132403b15c83dba55a0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:7cb309d5f667006042c81fc01732845672ec9fee28af3c3464845c64f848292b