Sign inSign up
Harbor DB

dhi.io/harbor-db

Harbor DB 2.15.x (dev)

CIS
linux/amd64
debian 13
Tags:

2-debian-dev, 2-debian13-dev, 2-dev, 2.15-debian-dev, 2.15-debian13-dev, 2.15-dev, 2.15.2-debian-dev, 2.15.2-debian13-dev, 2.15.2-dev

Index digest:

sha256:b4b63951bce797536e2d18f5cc9494845173164941bffd69f0e23ae648b5cd75

Manifest digest:

sha256:2d0005f82071eebe7227ce3f0603f7a56d9e2685a64419fc8a9552b586a1cff0

Size

106.73 MB

Last pushed

14 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/harbor-db:2-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/harbor-db:2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/harbor-db@sha256:53cd75b5cf75c28738b7af425b46daaaf534761c5c661ec3e6da31f7712e6b0a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/harbor-db@sha256:5a711a70f77207209cf699e78fc0aeeead8e15d76f22226d2aa0bc2155f1a59d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/harbor-db@sha256:2286d4365b2a698b35a2ac3bbc83283db586a16e1c0f1db985bfe1001e1bc603
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/harbor-db@sha256:fdab2eb2687813b26e06daa051b38db5159be0ccc31832bbbf1337b761a55565
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/harbor-db@sha256:b5f889af2c8c2a864622db2cb7216f55f8971c7c0532e136abe70d123c5230a5
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/harbor-db@sha256:85fd0495d72f5ec7e241c2194f934bfd48a2b9e302a5c68fc870ce35d285c44d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/harbor-db@sha256:a9c365e17d8b976872016018f30eb994fa72991befc804b777a8118a16398dd4
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/harbor-db@sha256:4894d8e7f7ce7363d91b1d9892d48d7cb3393cce077ea3a0f33bebb6daddd411
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/harbor-db@sha256:ff1945584fd48367138c3fbcb38a65bd08dde6a5a2d7ae25aad917adfb80c076
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/harbor-db@sha256:c67065ed1cff1b7312c39968ad0692b74e8778e47051bb1c6bd5c8e42c9a01fd
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/harbor-db@sha256:7cd9157f8cb6c92900f6ca3ebf4046d5bd1d461e151015eb298ff9612de59982
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/harbor-db@sha256:bc542e46d001d671767e9e4823bb55f5ca48500be59545813f4cd0609b543449
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/harbor-db@sha256:dfe942788515b07665495816d5554df56e717e083b6baedf8997b88e6540b433
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/harbor-db@sha256:3abd97f1eb2464ceda8311e82a6971daff0e03344e721f625cb627f4be6b0614
SPDX SBOMhttps://spdx.dev/Documentdhi.io/harbor-db@sha256:1bcc2f6d3b28ff32af6764e98f3b8ee8010218bb1588549de21e71edf94338b2