dhi.io/drbd9
9-debian-fips, 9-debian13-fips, 9-fips, 9.3-debian-fips, 9.3-debian13-fips, 9.3-fips, 9.3.4-debian-fips, 9.3.4-debian13-fips, 9.3.4-fips
sha256:16a49cbfd42289bfa551acc53f63414f06da369496bbb5d074378724f6788c27
Manifest digest:sha256:433f1084014c8212d1778f892b45805a7fc4e880d4b76c9101e929053b91364c
Size
145.45 MB
Last pushed
3 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/drbd9:9-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/drbd9:9-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/drbd9@sha256:6b229d6aa53ea3d1074fba6a9cd349e4d426d26d866bcafb268495bcfdb4e6f9 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/drbd9@sha256:02b0104ead5e0351c0049e95a54d3defc3249e00c4bca1d68df929eea664d2de |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/drbd9@sha256:2baeaab65afb6b03e88127812ce181bfffcf3be8604d028d8324dc3ecddfef2f |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/drbd9@sha256:eddd42c66f6cbf810e330a6846fb002402066e97ee96c5d78f48eb857af429e8 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/drbd9@sha256:e3b976ad0072146f7b3a495f607cf18ecd6c234b279550568533c9730b3fe8e8 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/drbd9@sha256:3ca6990ddb9dd2b7e40cc9e4818507f96e01b3c6028b681e67aaf6e053ba5a5c |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/drbd9@sha256:3c38808ab6aee529b8e949c58e56d98747c2dc948f1b0c75eea33d97b3aaa9b1 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/drbd9@sha256:a62f5a62123845d400e74a78124363ea98a5cc49cc2258814499adef30d9f0e2 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/drbd9@sha256:5b2b9d8a43e203c4557cff10382e47f2f927e1d1068b79d8f88fbbcc8a5387b1 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/drbd9@sha256:9d5edbd8ca0aedab275cab4f9a9a52ef4acc6d7e686c87cb08719b9d993061a2 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/drbd9@sha256:a2d09c2c9ae998190abedd08adb2568a43c0dac8bd674fae302c4f0b92a63bc3 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/drbd9@sha256:c68e4b76dafec3730d814f72bcd002b16f65c8705b3e81f1f3a4f7421676059f |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/drbd9@sha256:34047d839b8d1bcb941cf92f5a11497a60338377e7f851e40868e81f80e66ce2 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/drbd9@sha256:d6f0c58905896ba0d22b0eeb3394a923bcaa03436892bd26eac873e4c637da31 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/drbd9@sha256:30cc78172311ecbab102ecf62cc60aa3595eb53a786b7be6d3000a28c227a186 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/drbd9@sha256:089b0f06a9f18f8d634ece896960bfb6d289d0431e7e42f9880e7874bc00816b |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/drbd9@sha256:bb9282b6d274a7e7373abbebf5acd66f6e8b21aa2b2d7fafc0b2740cdca794bb |