Sign inSign up
Etcd

dhi.io/etcd

etcd 3.7.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

3-alpine-fips, 3-alpine3.24-fips, 3.7-alpine-fips, 3.7-alpine3.24-fips, 3.7.2-alpine-fips, 3.7.2-alpine3.24-fips

Index digest:

sha256:909269ffe2881053af8e3517ef770e5923249add24fcade55acb20aa47646a86

Manifest digest:

sha256:08493479ed5641ac56791548b44a13b9178dde222b37e1c591996cee2cd36e74

Size

23.21 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/etcd:3-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/etcd:3-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/etcd@sha256:d7def21706e4fc186abde9c8d535de81a78a3eae194c8c55ed7fabcab32d6a85
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/etcd@sha256:dba3b42d50ee0d5eec08c8d893af7c6289d9e2d95d40019f5d0cbb4a62a0bd51
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/etcd@sha256:229ee57e228828eaef86f16d2b88f9a5bd1c004015b2a37668e86af77bb68033
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/etcd@sha256:27eff40e1a8fe98248ba60788c4abb3247ae7297da8ed520135180931fb34d5c
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/etcd@sha256:e87a174d3ac8eea07b3962150847fc6c5b9e1f18cb202c1ba2c1a3e22de7d9ed
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/etcd@sha256:d66b9d95c6ce94ac047e762c7d70891d801ae52578938b0116d970320f77a6e0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/etcd@sha256:11c82969543538c3bd5b630bbd9078db9f12ebe2dd183378023db92dfc6b4aee
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/etcd@sha256:bb76ba64e95c0bdff4f4e76995bac19fd78ce0f4c581312c15f630ad3aef1969
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/etcd@sha256:f29793fae1235315fd1666ec7e52cc92da698dae5c5f23c96104597ae79578d9
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/etcd@sha256:be71f3e914151432098842c0b2b83a0c4f037c8cfcd64c83662cfba640175340
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/etcd@sha256:d3953ca83b8e84e5a020ffbb44f3ea7a03089b03c7e86448744dae2c6579b66b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/etcd@sha256:91880d939261a2a9db66d7ab9a920be0a75850e5a2fb07d2926c499eaeb1bd16
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/etcd@sha256:ed459b19465a5e1459586e8621de3ac673f230544ec37a67233d7bbeaa916580
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/etcd@sha256:707d23ddecf79e96a07ec5089d271678f59c8c59a66de26b5748e5c8a9154bce
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/etcd@sha256:d92afe50ea453105bd9ba5e1c49f5e92a5fccd1ef3fdcadcd55769d69f61e753
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/etcd@sha256:5b8359a9472225b7ab39d8f7397adb197122aa5df30ed4f2dcdcacf5814b1a4a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/etcd@sha256:b777ca5df6be5a3efd9356cb2a1572297bb78b33cb4462c0156475d4c706d43d