Sign inSign up
Etcd

dhi.io/etcd

etcd 3.7.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

3-alpine-fips, 3-alpine3.24-fips, 3.7-alpine-fips, 3.7-alpine3.24-fips, 3.7.2-alpine-fips, 3.7.2-alpine3.24-fips

Index digest:

sha256:e1edad922dd3655194f1f4f4dee002043f84fd90299eae0d7240e1a7654c1484

Manifest digest:

sha256:17f30d1ebcbce817fb8136024bd7c6491a72fbc33f2075ef7f00cbf4dfdb9299

Size

23.21 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
13

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/etcd:3-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/etcd:3-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/etcd@sha256:8d0b5d629d57610e1d8a07c4086a82aa40aa56d5d78565ee781e78358de420b5
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/etcd@sha256:62aa541f7dfbb1e4c161416727ffe85ba25b6f9f75023432286245e326889596
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/etcd@sha256:4c9e220122804407967279131f68b585a1d58c05a5ef27a5ed3f7051b9e4417d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/etcd@sha256:bbf6df63af50be259e0f7861e8698acbc976ca39029ebee9efa8171e3fbe89fe
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/etcd@sha256:ed336b56aaba33d10c687593e6bf2353625efbc90d55862b82764fe105297dd4
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/etcd@sha256:1e66964b80e9a2ab13af5aca16c56dbe11c5834eda0c9bc0cc8f5d200657d369
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/etcd@sha256:36bcc57224bcc157f88a8c48736dd81eb5d638d745651e19666ff8cd3b6f77b4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/etcd@sha256:98b89bad0170ba87ea4404e8cb4b6e6e180d156bec893ffb6271652338306541
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/etcd@sha256:0f3aa2fd3f41b9c79d20be344c74d9d00bc16cc8de60e5e63bf9724096033a73
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/etcd@sha256:152a5764796fdaeba9840de04508cdcb6286a6d815994f1e8b674023ea1c3e65
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/etcd@sha256:f94e1c5f5a564e1281c54fb3d227f6ff1f100cc798721f1bda274f581c1636ad
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/etcd@sha256:b5ceaffa21bc74db2771844dd8b6505e0b499ea721d8d5b1de5c36cf1a7a5321
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/etcd@sha256:d749e7677b6273b4e2206a03d9541afa2cd95acbade5ffa44d5663330d2a140b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/etcd@sha256:d6041e9190d07e556d2453f1be1c3b39079aa2b57734664ccb5d38801c983482
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/etcd@sha256:6a0c70926cf9f25bc987a4f5e071093f60ceba16910a20337903a923714361a5
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/etcd@sha256:cf27034bf30850722455bfc4e5e177ccff3060b8daf222f12b7b5034cfbab199
SPDX SBOMhttps://spdx.dev/Documentdhi.io/etcd@sha256:57805777450e9445af37c9f48f158f5dad7a3329967ce7b7810f6eadddcfd1c0