Sign inSign up
CoreDNS

dhi.io/coredns

CoreDNS 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.14-debian-fips-dev, 1.14-debian13-fips-dev, 1.14-fips-dev, 1.14.7-debian-fips-dev, 1.14.7-debian13-fips-dev, 1.14.7-fips-dev

Index digest:

sha256:8cd04f1847affe865c30e101dfd41b98fc081ba42d4e49c4801b3163556bc44b

Manifest digest:

sha256:d7e23c716fdaa921a55edea3299d8e1c7a45d0581a64c37999c753ac876731ae

Size

62.63 MB

Last pushed

22 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/coredns:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/coredns:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/coredns@sha256:1419b51b08083a12dc6babe1e5895466c636c7286ef8cd493b128125f37369ce
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/coredns@sha256:159ec22f422dc9c73fb1a4299986d056aeb2e777c9b4db6d49b0efedae6b2fe4
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/coredns@sha256:a22ef3e84a2c008e693067b4adf52fb97f29acab6ef6c47f48fba0e380d2c55d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/coredns@sha256:57bf30b6f99625eb14be48118993b8704e0fe1a95332d41888bc6904a5705b72
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/coredns@sha256:1f2d6099d54cf671cdb6e217e82df8d43f14e8113644b1159ae7e79bbf305e07
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/coredns@sha256:f4199d60a908b3a5eefa5bc47df915ab40033400039c2d7a08f193c5478034e6
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/coredns@sha256:cd977006ec5d5b48a29d13896e77f937025b923d356df9206e1bd90ac6fc4a64
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/coredns@sha256:bf404e5b6cddb775db193d7736cc4c4431a900cd52be113a4d6bdc56f0f5b52c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/coredns@sha256:3c060936515064ada4384fa2c2623cff020a7817a725bd62d57ae7609ada66f4
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/coredns@sha256:4643c3545297d269cfc41c3836f24867e31600073e9beeca1ed38a956c8eb54a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/coredns@sha256:061cca2ecc8deac27e4f30da89925db424d920155ce328efe7079362ca29a385
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/coredns@sha256:0fdf2d4203d1e13e1981d961a41c66ca68fdd5db0fb6484ec30208381187a9c0
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/coredns@sha256:f8591ee5f769e47c6e4ddd5dc13626fbba4b28de2257cac2291f11dbf31eb233
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/coredns@sha256:8308e35118e77250c8ae4988ca6438489c0e46048f4ea076ed0cd9c249155d4d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/coredns@sha256:8b642573f3c5b15de31d3e1fd527f150b79f539eb4cb7b0c0547e785ffa3b8dc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/coredns@sha256:656edaa00a6151aa759db07363bd5ed7817c000ec78e2f428467631fbbf5079a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/coredns@sha256:5586b5c619cbeec69445b9b4a094dbd2222849da68328e5e953888fb9d121303