Sign inSign up
Cassandra

dhi.io/cassandra

Cassandra 4.0.x (dev)

CIS
linux/amd64
debian 13
Tags:

4.0-debian-dev, 4.0-debian13-dev, 4.0-dev, 4.0.21-debian-dev, 4.0.21-debian13-dev, 4.0.21-dev

Index digest:

sha256:35f5e12415e5fec33ba61dc4e668d5c11e35485dcd5783304c8add90a1197a71

Manifest digest:

sha256:ceb7f8d72125899990f7a22d405c05d856fbeda225eb3e0a14dae584c00f73b9

Size

224.99 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cassandra:4.0-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cassandra:4.0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cassandra@sha256:0782c90bd9e8c2bf3dd7c385afeb45a021cb1bbbae6b384d957a1477484671aa
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cassandra@sha256:6a765ac6c8059908ee39bc2ed285270e492c67e7369696fe32ae55ddd3c7db4f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cassandra@sha256:f71bf46c13adcd97e583fed0e6443c7591563a0caf9566d8ff52010d800f3301
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cassandra@sha256:111fd125ded12346862d51d0d7caa06f73877ea06d8d690fe58b0e0c7731a1f7
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cassandra@sha256:dbb8954dd30f8f8171f104041ceae81dac677ec20d2cd2d2ad112dbde690a886
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cassandra@sha256:1f1d1475ccb62a3c410bf00b0b05d255bb9efc05c69ad38b016a2d7a9d40d688
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cassandra@sha256:28aa64f063ed8ab512d38ddaaec8072b0bcf47e8e0abdb574abbf732ad08392a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cassandra@sha256:28238392e881623ec18fdf7424bdaf9f25c02f6acc546bcd175238bef67f31e4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cassandra@sha256:7c18b1f0cb73b36468075afe74a04f7f7f31ddaf2a3021515ffef7ec7626eb68
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cassandra@sha256:16f36f65c3ad3cbc7dccd74299ffb9dcfb710f4503ba8f63d3eb8d671687db0f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cassandra@sha256:400e401d7d3e79c1599332c60483d7b85b8d4653a74bba47b52e1833ba881c8d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cassandra@sha256:ffacc677f79796ca1f9e6f3b2afb7ccf0136cdab4ce0ca4d3b1c085f3cf2a1b6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cassandra@sha256:80842ed4d12a4ce67473072bd13f8e3c01c0cf80ec9674863f4eca76b178ef00
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cassandra@sha256:2bab4b74e27a55c030793a0e380c7f3d7d8f8c1ccbac0eca4b759745e2e57d37
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cassandra@sha256:ecd5002f9230effdec3a3ee198030d85e57780d3fb4736f645bcaeea02301d3b