dhi.io/etcd
3-alpine-fips, 3-alpine3.24-fips, 3.7-alpine-fips, 3.7-alpine3.24-fips, 3.7.2-alpine-fips, 3.7.2-alpine3.24-fips
sha256:e1edad922dd3655194f1f4f4dee002043f84fd90299eae0d7240e1a7654c1484
Manifest digest:sha256:17f30d1ebcbce817fb8136024bd7c6491a72fbc33f2075ef7f00cbf4dfdb9299
Size
23.21 MB
Last pushed
2 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/etcd:3-alpine-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/etcd:3-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/etcd@sha256:8d0b5d629d57610e1d8a07c4086a82aa40aa56d5d78565ee781e78358de420b5 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/etcd@sha256:62aa541f7dfbb1e4c161416727ffe85ba25b6f9f75023432286245e326889596 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/etcd@sha256:4c9e220122804407967279131f68b585a1d58c05a5ef27a5ed3f7051b9e4417d |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/etcd@sha256:bbf6df63af50be259e0f7861e8698acbc976ca39029ebee9efa8171e3fbe89fe |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/etcd@sha256:ed336b56aaba33d10c687593e6bf2353625efbc90d55862b82764fe105297dd4 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/etcd@sha256:1e66964b80e9a2ab13af5aca16c56dbe11c5834eda0c9bc0cc8f5d200657d369 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/etcd@sha256:36bcc57224bcc157f88a8c48736dd81eb5d638d745651e19666ff8cd3b6f77b4 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/etcd@sha256:98b89bad0170ba87ea4404e8cb4b6e6e180d156bec893ffb6271652338306541 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/etcd@sha256:0f3aa2fd3f41b9c79d20be344c74d9d00bc16cc8de60e5e63bf9724096033a73 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/etcd@sha256:152a5764796fdaeba9840de04508cdcb6286a6d815994f1e8b674023ea1c3e65 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/etcd@sha256:f94e1c5f5a564e1281c54fb3d227f6ff1f100cc798721f1bda274f581c1636ad |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/etcd@sha256:b5ceaffa21bc74db2771844dd8b6505e0b499ea721d8d5b1de5c36cf1a7a5321 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/etcd@sha256:d749e7677b6273b4e2206a03d9541afa2cd95acbade5ffa44d5663330d2a140b |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/etcd@sha256:d6041e9190d07e556d2453f1be1c3b39079aa2b57734664ccb5d38801c983482 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/etcd@sha256:6a0c70926cf9f25bc987a4f5e071093f60ceba16910a20337903a923714361a5 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/etcd@sha256:cf27034bf30850722455bfc4e5e177ccff3060b8daf222f12b7b5034cfbab199 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/etcd@sha256:57805777450e9445af37c9f48f158f5dad7a3329967ce7b7810f6eadddcfd1c0 |