Sign inSign up
Etcd

dhi.io/etcd

etcd 3.7.x

CIS
linux/amd64
alpine 3.24
Tags:

3-alpine, 3-alpine3.24, 3.7-alpine, 3.7-alpine3.24, 3.7.2-alpine, 3.7.2-alpine3.24

Index digest:

sha256:92924f138ce318b62c485ee358340372acdc412dd2b5a999fe3f8641fa1b6fd3

Manifest digest:

sha256:47ac177d71d986c78e4f28c8c31a9fdab70c515f83c4bb7412c87bc9a85aa794

Size

19.81 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/etcd:3-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/etcd:3-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/etcd@sha256:7e670182faa7cf7db102313363757e58dd870fd0f4b9adc48444a3eef7375b8a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/etcd@sha256:2f7933c2f11a67a948718a45a1e2464d361158ae3f728406cc8e28428cff105f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/etcd@sha256:fffdaa7c68a89de2656e3f79f7c946ae0c109ce211ecfa9db2f47b7ab5a6600a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/etcd@sha256:936d7dcfe36713a38e16ac0ca3fc414d64fd10b17580a5199704749846ec49c5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/etcd@sha256:6142475735ad654db0c7dc6200cb273cbd5478961c6cf0fb3cea56cf00a75609
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/etcd@sha256:def42086e61d571e5a1daa5b0575e29571ca3d4da7e4f10bbe7e5506d1353ac8
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/etcd@sha256:2ef4d862800092308bca2cddae626af672b1f1860cb8f6569a4da94a0e28214b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/etcd@sha256:45860017d3ac4581646d832c56b85ad31a87430745111b7151b796e76939e27a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/etcd@sha256:5cc96f5ff62254707e49a164cdd4111f61d4d7b207070f3d901f1f34519abdd4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/etcd@sha256:60b0f882ab545b95c3f16c4d1ade7205a6ef7da83a79c3bb12a4845d9e291c06
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/etcd@sha256:42d6e65fbaf5a62dc11c21bebce44884353287035f0a2fd9fa001cb59f997e5a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/etcd@sha256:4100f740f192745e3d4a0cdf7115b70c3d4f04ea524bd0dfd05d07395d58a4b8
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/etcd@sha256:b6ccaaeb5290d9077ac9a9dd310506844e84a0d3f763b3cc8394549cccce3463
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/etcd@sha256:f0da336b769b873fce707ea76c8be50c3c4c9dae4516d2cf9e47fbec9656cfdd
SPDX SBOMhttps://spdx.dev/Documentdhi.io/etcd@sha256:822fdfd41307b9ac83e141964d97b6508b31b7d136530c6f46024d9a5978e104