Sign inSign up
Kapacitor

dhi.io/kapacitor

Kapacitor 1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.8-debian-fips, 1.8-debian13-fips, 1.8-fips, 1.8.7-debian-fips, 1.8.7-debian13-fips, 1.8.7-fips

Index digest:

sha256:0f80d16abea62aee21bc43e8984b9110d3832d861e8f074017ef66302c7a9fde

Manifest digest:

sha256:614074c759a311234c7ef0048a1df267545945dee3f855f4678ba934692d5162

Size

72.81 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kapacitor:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kapacitor:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kapacitor@sha256:c231dac563bb5e26d41eeb3247d6735913cfe70dbe77e500b4b3d227309a0c8a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kapacitor@sha256:0aa09b51fa5e1343380652301042187b7b42da4e0227a0264e68a2dd752461dd
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kapacitor@sha256:a9966592c68a883369b43dc72cf687b47f260186fbcedf92241535848e8432af
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kapacitor@sha256:0889e7b94fdae2128f2a4d5140e0c3cf93e333dad068750daf4b7c6d2571d59b
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kapacitor@sha256:fe0cb0d6cdbc8daa76b712c059706346e43e10bcb6bbfbcad9fc967161d6f25d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kapacitor@sha256:73aa986fb6c8b598821965bb16382e3f6b6391c17ab58ed30a9702ec61d2cd4e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kapacitor@sha256:49c992fd234906e0520dd54a4712d6c0c649ec4ac9b00dd5106ea4a0bece0c1a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kapacitor@sha256:134b25b6ad0ba9a696c55c064f6e1de966d46c72df037701223ebabcef496380
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kapacitor@sha256:73db9397a665b76a9a9aaf0a86ba1c5daabc2e8f1683098af0eadb21537b0fce
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kapacitor@sha256:42fc30768beb49a58f10766d9ca83b0ca0a10cc6659f455749382321a0505171
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kapacitor@sha256:248848d270ecdf495d4f515d9017c9c1677cf5190c15caec53ff447315631836
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kapacitor@sha256:f8583501d985aeb9f5bb48b059c5f29be3a26ef3a1030d03ee158ded9b04bf51
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kapacitor@sha256:d536405ab543a8667a798df208785b78ad9f5b1dc0b5a081facd9f4e7f1de465
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kapacitor@sha256:611f66d23c3b8a5eae45d916c7937caf72756a1ee547e906ed486a3c8f9b284c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kapacitor@sha256:253992e2c6069ea285bb6a24c082f0ec1f70649b851e316029e49b50dc420faf
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kapacitor@sha256:3393723b658e603f7013930378f1bdf6cf5d5e303762a7291f2f4f39a946f258
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kapacitor@sha256:6c6b14792a74899ba9744bb44bcdab7830221892b8686a4fff2ba34bce0575f3