Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 9.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

9-debian-fips-dev, 9-debian13-fips-dev, 9-fips-dev, 9.0-debian-fips-dev, 9.0-debian13-fips-dev, 9.0-fips-dev, 9.0.20-debian-fips-dev, 9.0.20-debian13-fips-dev, 9.0.20-fips-dev

Index digest:

sha256:9bac57f8d12ee86727ba5596d62dbf9a0493d21348233563162b52f78cc77261

Manifest digest:

sha256:8b33bf9616addd15e7f06a5d8770d0e10b28e19d4ebe31b7e678a7d8a8d3a681

Size

75.31 MB

Last pushed

24 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:9-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:9-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:ba5535135512638056889b0705c14386467176c968388251ea59d4937aa1ad02
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:007a2c8779b165a58fe81aa9edf5535886b465db2e56017ca7a693c63acf2156
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:dd1ba3d75921287f7647bf0aa54260d4317008485fee4cc8112c8f9a2e2b1957
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:20c185dbe0ad64811f7d95a817c475547c1468621d2bce93cc08637ab2a842c4
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:836f40f06ac4d3cff8dc8a0f02f33049e7767134e193435a462dcb7142c0248c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:89ba223cf3c27032410df8585bb738fcedc70769c3f79570944903fc1714565d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/aspnetcore@sha256:913b638b45bff2e99bc788819dc9eb071bdb1d0d922e757c993f40f2256827d2
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:cddce96f93ee2c60e68d4224b1118b275eb7e7452ec17ced4136a98cc93303bd
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:865bb150a10fed68ae99c480c8a04bc0738626c9e4d0656291e7886fb3fcccd0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:95ebdcf77da9b0a81aa8ed30a0274df109c43fc7a50ca062cbabdecdda044ace
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:c4375d3d06822d36553a98aa20a8f396f99705a311ca7e03529e2d8052e8c0d6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:f57ff129ca210db91afd3f8beca8277e559c6b1905ced697c5ae5ff6f918bdb2
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:2146c0b429120dd3ed879789b30d3aabf5a48b549edfbd4ecec4ccebcf0acb2b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:24531a7e34ec3a985fa8420cbfe4b80aeebbc1e57c4a931358e90ec2418c5cf3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:f6aada9e4715d4b1620f3ff979ab42babeccbfee9ab5c398986a922ee96783b4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:c333afc3fac7d48ef92bca4ee974b74a1c3d258b8d3bf4d2a98434e9419afce4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:f05a53908771a076e0bf261a0b203d56e690847dc4c2ec3c85609e38572ad4c1