Sign inSign up
Kubernetes API Server (kube-apiserver)

dhi.io/kube-apiserver

Kubernetes API Server 1.36.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

1-alpine-fips, 1-alpine3.24-fips, 1.36-alpine-fips, 1.36-alpine3.24-fips, 1.36.5-alpine-fips, 1.36.5-alpine3.24-fips

Index digest:

sha256:3ff48e6d3c8aa0d647ea7c469144a55fac9417f0b97eaca325cbeeb9ea1badec

Manifest digest:

sha256:d5d82076a6951d4d9a714636349344e0a6e482ab75ecc4866088f64f3ed7cf19

Size

29.48 MB

Last pushed

15 hours ago

Vulnerabilities

1
3
0
0
1

Support

Active until Jun 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kube-apiserver:1-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kube-apiserver:1-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kube-apiserver@sha256:191ef3324f888db68effd4550824d49409f9860d325ef3c611d5a536a14ae6d0
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kube-apiserver@sha256:aa9006aba7bd1d052fd76fe8aa6ce9b3bd25a0060efab84ce7473f912152d358
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kube-apiserver@sha256:fa77bfb8e7da8d3a164ed58ab82b597036e301afb64f9eff3a77a40ed4c52a22
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kube-apiserver@sha256:82c07868cc8422156a1838fc16a8502dd733a675760d75391db03d0a511ed708
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kube-apiserver@sha256:08edfe5c664e3e66892d10e58da2020dca5055025e29d307ba3208cbd381afb4
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kube-apiserver@sha256:78903d34b0525775dac6ebb1e7ef4691cdf5eb6885ab8106e930e61495e0024f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kube-apiserver@sha256:63f8ea4f89e0613d5a62ecb6b6018eeb7d6f95066d0cd1763fddd3af9663ea6c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kube-apiserver@sha256:9756fb3e566b0c845fbb4db11264a236e70625d7c7c7564511f96a6b0cc9148e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kube-apiserver@sha256:4d3be8fa29303654dfca98c9432090ada533b9b3ef3047a6ae710e2a8e0dcb21
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kube-apiserver@sha256:429bde92c135de7c0340e9064b465e42e99816572dd8cf56f894b34b137e91cd
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kube-apiserver@sha256:2f26cfe891248f6c8e35301a831e0ba4f248f6408491f26b388bceb0d2e7914f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kube-apiserver@sha256:f5c9357684e43091da6d218a61dfc02be1e084610f2f04245e2a8632daf66192
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kube-apiserver@sha256:247da7cf19df6512382f11539ebab2a77f0ba3a17c1c25d762c9157c243d911f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kube-apiserver@sha256:e78bcfc1ac18270679f47ba9d54e4d9e1f7d21a7b5410d9d4004c0a1e7ba0fbe
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kube-apiserver@sha256:8548beba8a8ae25ac5fa6a924a5eb8824670e777d6d0689326d04c68463ab163
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kube-apiserver@sha256:9cada6df33ad6d288966a5a580f1ca9081b62f91d4336346f7d562fed10031af
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kube-apiserver@sha256:b8774d12694c4cc912e435bf1c1fa8101245622c607783bc6bb516f6f000dc30