Sign inSign up
Centrifugo

dhi.io/centrifugo

Centrifugo 6.x

CIS
linux/amd64
debian 13
Tags:

6, 6-debian, 6-debian13, 6.9, 6.9-debian, 6.9-debian13, 6.9.7, 6.9.7-debian, 6.9.7-debian13

Index digest:

sha256:62527290e1086e28141d4c880d544aa3332fedc6018508cc6da9958028f8b4b7

Manifest digest:

sha256:a9c4341d75fd610f96665b61e376fab523161cd4ddfab62516e3479bfe3bda04

Size

21.73 MB

Last pushed

4 days ago

Vulnerabilities

0
0
0
0
13

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/centrifugo:6

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/centrifugo:6 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/centrifugo@sha256:089c92814bf6356c1874f7359c8441d618d7a16228b8bff1a4e14912f006ac83
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/centrifugo@sha256:2b100c48b62be1a898f34691a9ce8d42d0896aadc1bfbc2a3c6b7822be5861d4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/centrifugo@sha256:a735ff790ea4e2c3e93568ef01abd37167f44c03df1eb35fd784622ece47163e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/centrifugo@sha256:ce76285dcad8e411f30e36ae5dc8d8cce94aa70ff81eded31a11fcd24af4a7cd
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/centrifugo@sha256:b726552a126f645064b73741f056add416259e227bd7fa6e0a26224b081c7f33
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/centrifugo@sha256:f7ac3191a191bac464e308eb12a8b1e3427decf6c5d90d941591e436d93cfd50
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/centrifugo@sha256:53b66f2ff9312a4e7dc08d20dce58faea49e8d2dbc25e6bffbf12fdabca4721f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/centrifugo@sha256:f23c75fd95476f55a322cb4f0cde655aa533ea582a089b11891ce431345143cb
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/centrifugo@sha256:065d00565cc497c0a59972e84075e31abc03ab5a2df81b6748638de7a33b06c9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/centrifugo@sha256:3bb45346fcc41b3223188be24a477e518319ff3ac3fecb963ed945ef9e5a6fa0
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/centrifugo@sha256:6a88c77f29c3a38acc54b2cee5b812bbe8647d66cc5deb963df1e8264af59f17
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/centrifugo@sha256:234b213ee306e034ed7b51a686a6d4d2628c2fbce20a8c486d1e091fec15a1b5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/centrifugo@sha256:15e5d36c3ca54a304f27b83a4fd79b88774930036c755899db82af4b6366ed86
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/centrifugo@sha256:aa59bdffafb0848d95d5772a32046953eaf37f43236af4b0f70f185c3b9c0605
SPDX SBOMhttps://spdx.dev/Documentdhi.io/centrifugo@sha256:d9c975ea94293b569b98abf286c1f50b3af9805b3d5098970401043461de7600