Sign inSign up
Etcd

dhi.io/etcd

etcd 3.6.x

CIS
linux/amd64
alpine 3.24
Tags:

3.6-alpine, 3.6-alpine3.24, 3.6.15-alpine, 3.6.15-alpine3.24

Index digest:

sha256:0533b3f8955344fd97b8c1eb7742d8b317db6498da5195e94b48e773da0b7d49

Manifest digest:

sha256:db19f1a41c19a753cec5e019e5be0ff28575a9ff495f3193234d5ee21af87cde

Size

20.88 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
13

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/etcd:3.6-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/etcd:3.6-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/etcd@sha256:8b52dcec4f5abba808aae22994b3e0c5126092437e59d2cda4f5a02530950a33
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/etcd@sha256:927fe4d575f2c91d09f45f0798a7eea7e21feac3184e875d5574b0af0406e474
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/etcd@sha256:d9aab501998808f3a9329150cc485333de0265b99967bc91dd181f907bf1c3f6
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/etcd@sha256:d692425f15d9f2f59cc5ac9c5d8a11a38bfc47519ab99de1105b8ef5eff86b2e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/etcd@sha256:3721966c05335493ad24aa88095c365bbb2cc2a6cf1cf73934ffee6ecdc1a384
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/etcd@sha256:3f3bb3969b7c79486cce40178383a25d2036467dc3985d0dfe8fab5cd143831a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/etcd@sha256:1411aa9ef12ac60c255ad7f8af6f4ff52d4efefd74ac0eb278b9ac6ec8e67a2d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/etcd@sha256:3b086f49f813caa5c60af71a4fc9bc605cb30aa482d40bb0a75cc7d9a82a5402
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/etcd@sha256:bd0b19de6de3c2196e44618af22f4e7b635b9fc01cedf8cd18cef35e622dd8f8
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/etcd@sha256:360a403545099fb4733a69ee08bec81a8b82730514c83764b4fe9dbdb725a182
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/etcd@sha256:ab861c03fc0baafd0479ce63bafe489f017a59c01642d71f690c131944ac0b0d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/etcd@sha256:39c9bda201b84ce095881bef2c07b9c59e89d9faae962a9b7907795551ecd991
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/etcd@sha256:40e19bf742101972a1f00176fea3d118e4af8f7e6f5e6f13b000359b32b13c5d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/etcd@sha256:5ee520f0a4beae16f977f0d7d1dc082827c564b92c0433da7f99ca7e0eb21b4c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/etcd@sha256:d9ca5f901395069e5a7804abe1188e0ca3fd2f02a43c318d4741589ba0622286