Sign inSign up
Etcd

dhi.io/etcd

etcd 3.7.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips, 3-debian13-fips, 3-fips, 3.7-debian-fips, 3.7-debian13-fips, 3.7-fips, 3.7.2-debian-fips, 3.7.2-debian13-fips, 3.7.2-fips

Index digest:

sha256:841a07de37b2a4a089ecbaf23fa347c84f9ddfb27113c1edf1f08a80529511b8

Manifest digest:

sha256:323f442c33217ae3af922ec8b7508f3006c5062d72fb1c5acca42ce7bcc4fe63

Size

28.29 MB

Last pushed

4 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/etcd:3-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/etcd:3-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/etcd@sha256:e1974c292ab68956611df6247e3bb279f0dfef2161e305d64a19600cd0c590c7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/etcd@sha256:e67530a5198434920d0fa73d85daad26646197a0722364a324cd1cf23fa4de78
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/etcd@sha256:d7a7f496af01c4bb14e59a116144dc4a54520eeefe92d695aaeb0bb1c9598466
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/etcd@sha256:4f6652e2eafe27c3c8964bd65854e6bce1a4ebb55f467e04ce6a169344aa928e
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/etcd@sha256:1fc5c9474b06230bd828e3313393cc11b996ff2c00b40a1bf4237c95d32131d8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/etcd@sha256:0fc6ead5518c6de97d35c750f633c11f00fdbfe72448b5a5662057d378b472d5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/etcd@sha256:8112aaebd958c7f174fd705d24a2ea4adef205be2417ee13b90168d20855a21b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/etcd@sha256:1b0117468cb63b5fa522e023c3d8f5013c868e88d85a8474701744a6ac843979
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/etcd@sha256:33d9fb19ad5dce84630537a8d7068acf62a14435ef7de63eb248b51203f8a2af
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/etcd@sha256:4fb5128581a774ea017f89c30e56e505cf30cbf56c501218a05396cda9a5ff33
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/etcd@sha256:988097239b3bfa9785036806e6075ce2282d6581cda15b1cea7bacb82098a1c2
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/etcd@sha256:1dc19d32d33e9ae7f5364bf9bdaeada3d8e06947b58a83cd628b1819d3b69564
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/etcd@sha256:1b31805f1954bdde1c7442487490c95e177f0fbb5e2f5ed28eef72dc235ec7dc
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/etcd@sha256:91d394de0420dd44aaa16818ec18ecd8fa4578de29f52eb1bf1a8b630816bca4
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/etcd@sha256:f157306243b236422cbded0cc76479635068add4f517ad80f30e84444dc92771
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/etcd@sha256:c98f438df37a3e207a7cb9186d911df23579f9cb8e18b5f55f770225b2240d8e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/etcd@sha256:cb269ba5b61fde2b91fe0c3c27276006eb82c38652edbcd33f89408fdcec612b