Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 8.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

8-debian-fips-dev, 8-debian13-fips-dev, 8-fips-dev, 8.0-debian-fips-dev, 8.0-debian13-fips-dev, 8.0-fips-dev, 8.0.31-debian-fips-dev, 8.0.31-debian13-fips-dev, 8.0.31-fips-dev

Index digest:

sha256:9c5dd9cd8582ae4936b6004d1c35585a84eb71695df88e4e1c40ae664259f546

Manifest digest:

sha256:1d62c12513f21dc07f37bc1d18f0d8a867b355e28efe3f1a828b637d3a7d062d

Size

73.34 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
1
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:8-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:8-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:290a0b1a9d9c6408b42772c8b7090a7f87e0758ff8bc313995a377855b9a1bc8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:8cf0ef9445daf337f6da7e711d3c4f9a9f8a952e87dbe1f71efd27863915246f
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:56ec18d437489573f88e5ef99b15eef531ba85a3915ca0b8b8915338d8f61beb
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:f5daac2ddbb5e5dd4afb9a32a5c402f7cb0a2d16ee5eb48be661bfeded554d41
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:e755499b15a00e7e64c34f18813cb921bde608b77552b852406026ab54cd689e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:4ac033bed95704e0ce62fd68c960077552cda069502defce3972236641d6e728
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/aspnetcore@sha256:fd0d965d4447282c50bab22adfddcca4194d659e38552f03f854f2542df2a579
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:d79eece10e92977ad337b4be0f2452f44e3ec18234aab5b1ddfae2136dce5519
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:cbbc1899dac819890489087aea0a18220d45726e3e0d1fdc66588822136a949c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:9636f7ebd0b7fc5a457b59831f918e9301f49deb5ac80c38da6a2ab22a4ec64b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:741b7f00cbc9e17c3f58a5d9f85448f2985703287cd8a2fa18274b1233ed827c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:b13e32c47af51ae6c94c53ea3534ee6d488a3a69174eedcc0fc7de1c07cfea7b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:541aa936b0100b2b5e9be81656696bd3cb70cbc22ab10a811edd08a3ce96b8b1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:d9fe8afca5f1f715f437bae5a20def1e1354be7c2c9919cf6878e14b232542ae
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:7dadeab4e32fc4e495fed3bc29f4f0abf33049b32986e6de7f4adb91393b6657
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:6b572fce366b768240be648e0d090076130e85a1a4cbda7a6cdd4e77745bba78
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:6252aa4c913e0a47e505f49da6e54fdf9b6c83b7a8042a397a74518c7a64ccae