Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 8.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

8-debian-fips-dev, 8-debian13-fips-dev, 8-fips-dev, 8.0-debian-fips-dev, 8.0-debian13-fips-dev, 8.0-fips-dev, 8.0.31-debian-fips-dev, 8.0.31-debian13-fips-dev, 8.0.31-fips-dev

Index digest:

sha256:451301811f60f56f1ba5a7371539c71a4664f0c65394dc11884d9ba338549b06

Manifest digest:

sha256:e9171ab2465f058d9611d604dbe5eca93a7bec3bb02bc24960039771de997e73

Size

73.34 MB

Last pushed

5 days ago

Vulnerabilities

0
0
0
1
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:8-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:8-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:36f8c25660618f538584d0acfe5f023a8c74d05b316a7ce506b5ad200aa76f11
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:886990df63dd0cbaee739e0d1dccf2cfc9499dab2b0c477547297eabfd8db309
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:318e1d28badcaaf99fab1e7ec0759dad2ce0cad9b0aad6a960c835870f184a87
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:7f87262e5d57474b79decfe91ed59ec2e04a6e740df1b92f46aa8eaba52349e5
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:d1f7b3a63949c103fbcfac08122f409ce96d5c8ab0eade6f8d120738323c20b0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:6a0432cb2d3959e1eadaf94390e4f7a06f0b775717aa05f116627d006a9f4eee
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/aspnetcore@sha256:abd7ff7baa217d64d576fd7ee8b600119d96483b5178666d9cc8024c3c66afdf
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:8f18ed7cfcd04815921a106a7984b98150a0ecdd1a3eb251f95e53f2ddd6d48d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:cbd3e6ebccd49298505a984f0085be85cd1c3ffcd9067b56cedfde4d97fa70fa
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:11d63e168c94ac7f1576eed948f48857e70bb2ec0279e39748b744528bf638a9
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:126239cbfe85bb91fd1ae6c2aa7a086a9d5de0f082df122abfe15890cfa9a2af
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:2070c9083e0c498437557ebede01e2e3402eac6b62b34fa2ee48fa768d5a75b9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:50327599bda774a05dfc05d6156a1b1797ee014ed3333a9d9a7e9967d7e391f7
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:d29b5ab962b7e66ecb3aa47f0ce83d9eec6ebeb15def5ef6aaa1bd01154ab0e9
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:d7cdf758d032111c5def3eeae964a06419cc86f168eda9ba44eb366726c806f7
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:fa91309835532b74d0e5fca825b5d67d1e049a2d5555d4b1c5abdd94176ba2c3
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:5fe368ac6b42bd07ffc6850e871e4b89ff6b3a8897dc0e61c4fedb032b0f4cd6