Sign inSign up
Centrifugo

dhi.io/centrifugo

Centrifugo 6.x

CIS
linux/amd64
alpine 3.24
Tags:

6-alpine, 6-alpine3.24, 6.9-alpine, 6.9-alpine3.24, 6.9.7-alpine, 6.9.7-alpine3.24

Index digest:

sha256:f21ada3d7ea4033ebcb0fcd93178071bdf6386a808ac1e5bf084096160781cef

Manifest digest:

sha256:9a283b0c0c7bd8e68da2b49ee255d7bf0c6fb5157ce8cda018677a869a447fc4

Size

21.43 MB

Last pushed

13 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/centrifugo:6-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/centrifugo:6-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/centrifugo@sha256:5ae523d6d063d4da635451a9cf31c0f22c6f240fe557993045a8d96b65a77ebb
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/centrifugo@sha256:67d80c212bd23191fb350a3c7476febf0295d6e01a0c4df618e1cfb0cab82c4f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/centrifugo@sha256:625cb9b1db413569c65f454e36a21322c3fc98c3254d86bdfbee9bafc0aeabd9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/centrifugo@sha256:5d64ab658bed44cc813c2bacda57b6afb4c6abacf756f6a9960914ea523f13a9
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/centrifugo@sha256:24febbf82d234804cb6c2414fc019ae51c18b3aead81271b80de20b336692d3e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/centrifugo@sha256:4c1be21174f88bc059d80679d923b127248ebee555e017f23b5285120f7bb554
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/centrifugo@sha256:7c1bd88a22b1b7be71a43fb0bbaae20fd8d8da5a69f9672277fb2366ddec50f7
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/centrifugo@sha256:84892a8568794f74b97f308a0904f0b0888b5c3b0486f744e3276826c7fb804c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/centrifugo@sha256:76c80d28b2e0497c1ac6df7c5e9b2a2342e237149dba1c8d8662a27afad698b1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/centrifugo@sha256:20857ad2ee4d7895a39b42ce3b492de0c4bd405a209723c6d9a0a751d8b09802
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/centrifugo@sha256:8ea6b4b0e5ec8298c40bfbddf4f7f9bd7704c92b4e81bb59f38cbbe271152844
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/centrifugo@sha256:d8eb9efb4e09e97b5bae0b53e4bfb85c651d0947443b61aeed8125cb404bfea2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/centrifugo@sha256:9f054ed28fc2804051d198697b42003e11d030817232cf4e5cce88994cfad35c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/centrifugo@sha256:31f9de78578bb74b42498ee8a2c8859ee2beb5f21a564d4b992e9c904c8e64d3
SPDX SBOMhttps://spdx.dev/Documentdhi.io/centrifugo@sha256:942e2c8f4374b825c407717473210b9ffdb38ad25956a4c547a7dcd40b30bd7c