dhi.io/calico-typha
3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.32-debian-fips-dev, 3.32-debian13-fips-dev, 3.32-fips-dev, 3.32.2-debian-fips-dev, 3.32.2-debian13-fips-dev, 3.32.2-fips-dev
sha256:559b26e719a0daebc7a87bc6bf356ec40439130aa0b9464b5ff83a0ce625f994
Manifest digest:sha256:1bcdd7437d0178fb978ca97bc71c9f8693d163d13473b9aa30930434711bb6c1
Size
57.75 MB
Last pushed
6 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/calico-typha:3-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/calico-typha:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/calico-typha@sha256:2c8a309c2b76da92cb5b294255576c29af2b4bb83a84237b9ee5b1a928926248 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/calico-typha@sha256:55a002e29a5850f9742423366d5b098fd5c4c3da71dc28811e7b542752ea8be1 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/calico-typha@sha256:fd4ffc0aa288603163cb69116c5e735ec9fed902024d15bc1322494c61523404 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/calico-typha@sha256:1caafec772f2490800db2ab712554435dfdbe323ecae3fbfd376f50c6b026eee |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/calico-typha@sha256:ceef897beab5e80cbec527762329f7c7aef91bb48ef81ac14e5a38ab901f577b |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/calico-typha@sha256:262f0c3393f11cd083949fe8642d2b8003e6dcc8740a6bfc5a0e349eee8a605d |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/calico-typha@sha256:909198ef691c9f674f9098b2ecc307f269f5b081d2945c78a094557ea61781ca |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/calico-typha@sha256:1a56ea370f7b68fb02879e100adc3a8b3f4f219c15cd8cbd4538117ba8ac7a79 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/calico-typha@sha256:03a3f8313b249eb6a32f3fc35d5d13ab2ae192cddc26c6de5cb0515f300f542a |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/calico-typha@sha256:93e7df1d9a66624e223f8f3a74c04b3867fd80e60e75d7a5eafad6ff5f9a9765 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/calico-typha@sha256:015c4a643d02dfd9e7645e5b29042a8ecb32334beaf9d9c5e15e7ea3fcfc2831 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/calico-typha@sha256:b460afc3ac56acc5bc84b6c669ea56114e1de1fa44ab4cc8a6c1a1f9e8ba7d6f |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/calico-typha@sha256:5ee0f5ddf10aee5998307c77b88dd5a1c33947a7264423d49b4756a1831c4617 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/calico-typha@sha256:b6e66cf227f6e230e54c17c33ad94590f4e8b64453cd7c89a32f637ab8a481f5 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/calico-typha@sha256:944316764167c1b0214d63c764a81500cc455e8a2a8e08185311dbd888eb1ad9 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/calico-typha@sha256:6cc2d0c512b70632c70fec170a90f8ba88025cd1a804c668cd71c927e2896259 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/calico-typha@sha256:70eef43043bb02097d35be6513b92909f583beaa367ada304b476bcc21607ada |