Sign inSign up
KEDA

dhi.io/keda

KEDA 2.19.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

2.19-debian-fips, 2.19-debian13-fips, 2.19-fips, 2.19.0-debian-fips, 2.19.0-debian13-fips, 2.19.0-fips

Index digest:

sha256:347cec80d8dfc728662cb4cce6792b348cd6defb4a4f414511435da1f800088a

Manifest digest:

sha256:0234eb3cea57d79c8ab1c23617b19b76ebcb5bd3a72879ded0f11dd88a5d31ef

Size

48.17 MB

Last pushed

1 day ago

Vulnerabilities

0
0
1
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/keda:2.19-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/keda:2.19-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/keda@sha256:6d58b10e62363f6ba1b91c6434f5c4255d93742c7307882b105321e0ced95211
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/keda@sha256:5d55b48801be5082b8ca31e0e8fb28bb0e0be3c268529563f870f695b57707af
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/keda@sha256:f101644d4a15c12e4ed51d606b9a6174b1e3d8c6fe3626a7dcb886204d334128
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/keda@sha256:76d32ec7c54357de6ae9a20a84ad949727b1452fcc4b382a8863df50ac93e1b4
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/keda@sha256:91828f784372f111f799e4c2aef41c8826cd59b99bd2f92d43c63d404330112c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/keda@sha256:bc9164135f7e8b162e5fd2e7b789efe15076474eca80f64e7be389c9628afdc1
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/keda@sha256:640b06d9d2ba0b5cf76ba13434237e31f32908b93dbdbc70c67c3a690cd28a4f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/keda@sha256:46d188a574fab9001ae37b519d854e7404672b81810c42cad00c0439e4200180
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/keda@sha256:034cf27603d512ec572f64cba995dd76e09a2b5095557e4bef10b541e246684f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/keda@sha256:50396c1e5252640c11b7ec8d7f248cf5d1c9f4ad9bf93d334b474ab2f43c110a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/keda@sha256:47bd6afd10c22d14a230b5caf1d330dc61c7181e1d28d5caf7ab1c0e5c627bd3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/keda@sha256:1b26d1812e448979036e25483caca4d5078d9490712699b947272ed2f45c4da6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/keda@sha256:36b61d9bbc4f70294f4d89298860f380e2fa55845d8e3749a913fbd5c010d06c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/keda@sha256:3e6cbc2dbf37aac4b5af8c692ae7a054fc1a5ef2e3b22499454d7809f1ea80fa
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/keda@sha256:fc2c504101e55d2811bfb49757b62b6fb0d6243e48658a3fc6298b8f893597ba
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/keda@sha256:ee14c137df625543b8864a1dc0f1121aabef23ca3c0566c2436c0e4d8672f6ed
SPDX SBOMhttps://spdx.dev/Documentdhi.io/keda@sha256:abbb6b05c03a321304ffe7c19c741236037aa97eda0d882cc6b1b1bfcbba53aa