Sign inSign up
Calico Whisker

dhi.io/calico-whisker

Calico Whisker 3.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.32-debian-fips-dev, 3.32-debian13-fips-dev, 3.32-fips-dev, 3.32.2-debian-fips-dev, 3.32.2-debian13-fips-dev, 3.32.2-fips-dev

Index digest:

sha256:ef74ae6fc0925dd67863f39831d6c9bdbabdd19cfba17ff681351f994b79ae0d

Manifest digest:

sha256:159481664b265bbfe6dacf3fd5ba1999f28a321e8b041efb68453f6218c63111

Size

25.31 MB

Last pushed

4 hours ago

Vulnerabilities

0
1
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/calico-whisker:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/calico-whisker:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/calico-whisker@sha256:9ebb77e8295715bfa5377c77163febb89ca8b6b7060bda1d0db3eae4ac71ea74
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/calico-whisker@sha256:982835775b7f7fe3c3a328e8f76332165d78b45845329481721782fe3393fe2e
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/calico-whisker@sha256:dad6889efc9de90cc0e422cb7d382dbdf697066f6fa898b764a28baaf0023cdc
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/calico-whisker@sha256:df444cceba5bbb87142c1de8fe4092da6fcea9739fe140f7e2a439979a7fc03d
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/calico-whisker@sha256:244a48100880f0d2be4e8ae528c7790a72343f70eec74c9e728c981f28c321e8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/calico-whisker@sha256:c6ac7f15c76116ba44b44d418649533ba0edc7e683d27dc6c527b7f95c7f2ff2
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/calico-whisker@sha256:2d3acf4782f6485a18d2e2beef6c94f23e3e05defbd3b42c69610eb919fa4223
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/calico-whisker@sha256:90ff47cf663368bb09e6c95ef66bdd3b2f65e9d560fa5894d174db3de691e001
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/calico-whisker@sha256:e8f7ff0bffa35dcf114f16f092a94d23fe5fd1e104f5cfcadfe2148105041eca
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/calico-whisker@sha256:76962b78cc020bffb94763c90f45754c2aad8c94aa576225898f2c0a6e8dba14
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/calico-whisker@sha256:c9e722064df87f9510fdfa3968277cded08764319dd3522891dd152a1b0e6e9a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/calico-whisker@sha256:33c98f01a6ed5c4d148511b5fa018d1d128ea13a10efef400c2ea2c439ce01b6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/calico-whisker@sha256:26d9246b7ec6a31dc850814188d2e3c2d0b1e613c10e52bb4f57a0af7a0c9e80
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/calico-whisker@sha256:80ca106f049eb43790c25b38f87eab9ba95399dc3fd70f3858f7d719ef80599c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/calico-whisker@sha256:9c2e6166575d56c053cc5c4266c7cc68e13204d3952003fa62bc534f8dc75c00
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/calico-whisker@sha256:12f6dba58c53516993057f053c0a0c99272267e16f8b254328ded165f6d3df6e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/calico-whisker@sha256:ddd50301cf5219c2ebbd18f26abd6f383691fa389cb87c07c8abf555bfd317cd