Sign inSign up
Harbor DB

dhi.io/harbor-db

Harbor DB 2.15.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

2-debian-fips, 2-debian13-fips, 2-fips, 2.15-debian-fips, 2.15-debian13-fips, 2.15-fips, 2.15.2-debian-fips, 2.15.2-debian13-fips, 2.15.2-fips

Index digest:

sha256:326da2062b62f18f2c4077242cb2308a7881a35633d36ec863cd08be38c9fc04

Manifest digest:

sha256:0a857c08cc235d50cbb8420c228a6ee12e4fbb145bc3b7bd75ca0bf341d50ec0

Size

97.43 MB

Last pushed

22 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/harbor-db:2-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/harbor-db:2-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/harbor-db@sha256:497dc16348453ad8880f9a60415919b1dea381581e621fc578262781e7ff4700
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/harbor-db@sha256:ec38f34db1791e2dcb736b42bc23ca16b48e2f578b91cbdebe9d54fca96f86d0
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/harbor-db@sha256:dbcfe20a43f8f701e81b73734f6f7149ee778647b880b712d4331aa9626b5a04
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/harbor-db@sha256:e0133d3f11794f8143e042ad36be3402e3f493f9a98511bcafe8b8b6236721fd
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/harbor-db@sha256:a42bb5116d265fc8d0e1db0bf27f0c87dc8eea40d3739c7e9eb38e74fb39ec49
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/harbor-db@sha256:5814df64ea867ae4b6ba52c7effe10105ac6f55beebee3944da1df2062c2205d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/harbor-db@sha256:8d365abddcca92792252acdfc6584bc4b052d163134eafc79d0ecc01d2918a0b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/harbor-db@sha256:1a616b3a3d458dc045e0e67468358410d1e9567c016786131942d0a6ab339301
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/harbor-db@sha256:3ff154674bb9c8e46889abaead388e94c9416e0bd5b187e1bd8fe37dc82be2ca
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/harbor-db@sha256:323da4a0ddda8383919710598ff021947380a2cf8e4475aeac46d84f57b87316
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/harbor-db@sha256:1db2082d9f0c4c81d45418f9262a719e32235a458d27845ae52dc3f1eeee2f4d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/harbor-db@sha256:a74abe245b632fd1e592ea85221f00530e86f93f2877ef2521d2c11b55686009
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/harbor-db@sha256:c9a26f56d964753c84ea29f3aa77cbb1b583667bf97f00a9291809ec5cea5379
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/harbor-db@sha256:166f76e9f9033a07bf3ae428cc8ff5e473e80303c015be799a93b0142f4119bd
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/harbor-db@sha256:260494e555634dffa86ad897c7aa89f14bcf0c4fbd87017473885362aee304ab
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/harbor-db@sha256:0167ae890c882c30f43f43be497aefd0e920fc9806f020dbb2a4ba05640681da
SPDX SBOMhttps://spdx.dev/Documentdhi.io/harbor-db@sha256:2719fe3c533a867a5da22ebb91e6619301e7fa0536585dfe2e89d066fba0384b