Sign inSign up
Calico Node

dhi.io/calico-node

Calico Node 3.30.x

CIS
linux/amd64
debian 13
Tags:

3.30, 3.30-debian, 3.30-debian13, 3.30.7, 3.30.7-debian, 3.30.7-debian13, v3.30.7

Index digest:

sha256:cb9b056583a1f32b4e1fe40abebfbdbf7336ac61b8d0c35f8526df335d9a74f8

Manifest digest:

sha256:3854dbbd48a293975e924297fc414f370a745ef5e49a25dfe3038f1ecf39ab73

Size

54.23 MB

Last pushed

21 hours ago

Vulnerabilities

0
1
3
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/calico-node:3.30

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/calico-node:3.30 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/calico-node@sha256:f3b13606cbaaaab7ea3b9633c6b8573ffb72c3a97f453b2d0745e49e3f7d1ec1
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/calico-node@sha256:8196005015d69c23eba3f957d4e83c481768db4ccb6fc8c6f197fc07fc402c89
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/calico-node@sha256:03a3bef4a8f1e11b822bbceef3dc48b35f17552843cc4b45993490fc3f5f7e6c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/calico-node@sha256:a6ef519ba898fcc085f1cb69f5fdee74c842b2f11a803a66d0609a6e07a3149d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/calico-node@sha256:b9052e8e857d009675134d575d7399ced9761a3eb724a714e6daae4c9d0e9ce8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/calico-node@sha256:f24dfbb7430cdc2722e4e1b44237c99c32886d6deb345942d134c7584bd7e06a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/calico-node@sha256:88a4bd8eee379a0a498ecc0fa6a17b7e5aaf21d1f895a151140192aee7a74fd0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/calico-node@sha256:ddb839884c0a151c7bfe52d10219d03bbe05fec51d47a6857b1c4762bc5a425b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/calico-node@sha256:1d3d02343ddf785bd5aefa5c59eadc254fa64dae3ee30af7b59bdf64d8ae1851
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/calico-node@sha256:9c4d51dfdfbc706fa0822ee330cda596526619551270d4a03d86627a3c893b5e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/calico-node@sha256:46cfda86da528210d2004934ae2bfcbe478d4883486a5d41a95686d2515dec76
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/calico-node@sha256:e16d14497c2cb6a2b4ef9b058a50df31419d02683e9ad72199c7615d995bb3e1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/calico-node@sha256:ed03f435023b75494b432402ef979f49b148519d1f554a2a0780ea49c70b4e8b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/calico-node@sha256:c4b2fe01aa802a56cca5bf158bbd562eeba267e7cf1182497031127fbe7fe33f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/calico-node@sha256:ee123a01a28bd177b2906c434f6e96164b1fc5de3bd3ab26c1143871478f669f