dhi.io/etcd
3-debian-fips, 3-debian13-fips, 3-fips, 3.7-debian-fips, 3.7-debian13-fips, 3.7-fips, 3.7.2-debian-fips, 3.7.2-debian13-fips, 3.7.2-fips
sha256:841a07de37b2a4a089ecbaf23fa347c84f9ddfb27113c1edf1f08a80529511b8
Manifest digest:sha256:323f442c33217ae3af922ec8b7508f3006c5062d72fb1c5acca42ce7bcc4fe63
Size
28.29 MB
Last pushed
4 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/etcd:3-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/etcd:3-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/etcd@sha256:e1974c292ab68956611df6247e3bb279f0dfef2161e305d64a19600cd0c590c7 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/etcd@sha256:e67530a5198434920d0fa73d85daad26646197a0722364a324cd1cf23fa4de78 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/etcd@sha256:d7a7f496af01c4bb14e59a116144dc4a54520eeefe92d695aaeb0bb1c9598466 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/etcd@sha256:4f6652e2eafe27c3c8964bd65854e6bce1a4ebb55f467e04ce6a169344aa928e |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/etcd@sha256:1fc5c9474b06230bd828e3313393cc11b996ff2c00b40a1bf4237c95d32131d8 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/etcd@sha256:0fc6ead5518c6de97d35c750f633c11f00fdbfe72448b5a5662057d378b472d5 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/etcd@sha256:8112aaebd958c7f174fd705d24a2ea4adef205be2417ee13b90168d20855a21b |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/etcd@sha256:1b0117468cb63b5fa522e023c3d8f5013c868e88d85a8474701744a6ac843979 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/etcd@sha256:33d9fb19ad5dce84630537a8d7068acf62a14435ef7de63eb248b51203f8a2af |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/etcd@sha256:4fb5128581a774ea017f89c30e56e505cf30cbf56c501218a05396cda9a5ff33 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/etcd@sha256:988097239b3bfa9785036806e6075ce2282d6581cda15b1cea7bacb82098a1c2 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/etcd@sha256:1dc19d32d33e9ae7f5364bf9bdaeada3d8e06947b58a83cd628b1819d3b69564 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/etcd@sha256:1b31805f1954bdde1c7442487490c95e177f0fbb5e2f5ed28eef72dc235ec7dc |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/etcd@sha256:91d394de0420dd44aaa16818ec18ecd8fa4578de29f52eb1bf1a8b630816bca4 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/etcd@sha256:f157306243b236422cbded0cc76479635068add4f517ad80f30e84444dc92771 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/etcd@sha256:c98f438df37a3e207a7cb9186d911df23579f9cb8e18b5f55f770225b2240d8e |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/etcd@sha256:cb269ba5b61fde2b91fe0c3c27276006eb82c38652edbcd33f89408fdcec612b |