Sign inSign up
Calico CSI

dhi.io/calico-csi

Calico CSI 3.32.x

CIS
linux/amd64
debian 13
Tags:

3, 3-debian, 3-debian13, 3.32, 3.32-debian, 3.32-debian13, 3.32.2, 3.32.2-debian, 3.32.2-debian13, v3.32.2

Index digest:

sha256:3c321de1601fe5e48f7571f3364e4b5dbc2350d8a55dbe8050f0cd8d3510ba21

Manifest digest:

sha256:1b6ecef57969de16e59a0cdbf6064951fc851c2404d7a92abe68241de01750f1

Size

4.63 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/calico-csi:3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/calico-csi:3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/calico-csi@sha256:f8a3f0c48fa3d031c4a98e175d3f31aa181cc147f5e2e287c2d308b8f0637eec
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/calico-csi@sha256:c3f3b6b1f7feb3094a7d33511cecb6bd115399450f4b9186b8ca929252a9a6de
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/calico-csi@sha256:66ddfb814329d4d55fcb1f5c621b576cbff135c13262356d032b19b08e1e55ee
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/calico-csi@sha256:10ce88892aaaa12293101430943f1999e5162271a14b945e72f4d9855988b246
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/calico-csi@sha256:f748abdb085826c89fd997ff793bbb7292097cb221cc149318d7f58a7b528a5e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/calico-csi@sha256:44ec0954cd382c8ad094ab4ac664ec59ecf9f9dc05474ba470fcd9442c87d1a2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/calico-csi@sha256:77543274d9524200997559f82bb8ac6187e6d3f58e017dbf2cfd0db23d991945
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/calico-csi@sha256:a5bcac6a60cfb695f7ee7d3cbb30567f26c99187519140262c2371618a9af7bb
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/calico-csi@sha256:59b3021bdc70c0f79db5e7f5c2fd5ac3e7aaf26f79055cca0b811f4a97851243
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/calico-csi@sha256:95a678bab088cfb996146a03a458385b4c6012f718b0120063b5418381e35047
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/calico-csi@sha256:dd5752ffaa0fdea19dfc55b18231f7b95da210e44468a6c68f2e83920f8a9a3d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/calico-csi@sha256:0302dd2b58a2e53b6de726ef42cb80af3888f5b2999761677cd6e5f2884ba352
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/calico-csi@sha256:6aade3dc0dd6fe7c63e752301505c804dbd363670992ece7202f6319667ad4df
SPDX SBOMhttps://spdx.dev/Documentdhi.io/calico-csi@sha256:38d771be91906d30136339992a0adcfcf084d0543efd1bb34c51c9b791535350