Sign inSign up
kube-mgmt

dhi.io/kube-mgmt

kube-mgmt 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

10-debian-fips-dev, 10-debian13-fips-dev, 10-fips-dev, 10.0-debian-fips-dev, 10.0-debian13-fips-dev, 10.0-fips-dev, 10.0.0-debian-fips-dev, 10.0.0-debian13-fips-dev, 10.0.0-fips-dev

Index digest:

sha256:5e1017ffb960d26f4a5602c9416d8df692d5598a974001fa500dc3860d7fbc32

Manifest digest:

sha256:2e19f89612b8b1a2ff757bf6846b154b670e29284bf45766b987171c210395de

Size

51.90 MB

Last pushed

18 hours ago

Vulnerabilities

0
0
0
1
13

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kube-mgmt:10-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kube-mgmt:10-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kube-mgmt@sha256:61a5d1aecd6307ebe36fb2b8795c1d7ee7d0909135c4ed92a4c9e8d45bfe2cc2
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kube-mgmt@sha256:12fa337fd612682ef28dd0f6dc1c21294d860b83f048f6532a34d1fce2319bda
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kube-mgmt@sha256:76a57537ae1e5a5b096fccc84c5fbac5bcfbb15ccfd736fa55086930dadfd580
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kube-mgmt@sha256:1653eae470a96abcc38b2bf8250057dfc7efbb2a781c60112e23bf2289d0cd37
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kube-mgmt@sha256:7172faf5c7f575cf8402b1682f343c7723225e0bea63c68d471632dd3deff136
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kube-mgmt@sha256:a78754d9e6e0bf3dbce7d6dacd39c39ae28aeffa180aabc57819faf91e64bf4d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kube-mgmt@sha256:bd88d43ffaaebc8145efb4ccf8a5a45682be06e1dfeba6513b6027cc7c3bcbc7
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kube-mgmt@sha256:ee5a6e40767e928da66cc49e9075f5719c84fc5b6f515b38c4f88c72349dc69a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kube-mgmt@sha256:b9375b6e90805e1c2f0cb8325a5da922614ad7807ca0f77e0178a7ed9b6067b0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kube-mgmt@sha256:331a740b6c7a73f46bd3d6c3ed3281f3384b80607ddd551d03397df2766d19cb
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kube-mgmt@sha256:fab2cfd18a6e9ad7532c9a23b9649396c1a47af875c5f987276a49434c2e97ff
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kube-mgmt@sha256:0de09ebe7b94dfcbb25d14261c6886259b80b648f65fdbfcfd46c6058f06e4fd
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kube-mgmt@sha256:10a537fbcef18cd1129e10e36866a82b9fb300d515a241b135801b1198c0256f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kube-mgmt@sha256:9291c69cd1ada6060e49ca02e5c2b02380ca6d5fd1cf6b9a17f5382c70e1d059
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kube-mgmt@sha256:b828926acc4dac17c1dae5bd4352af87f5a1ed52fd8332e51309f518877dd812
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kube-mgmt@sha256:b8d4a4293252ed735d3cd4abe2aac0e77e0967fc836c5d2f834bacd989d35b7a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kube-mgmt@sha256:74028ab7c5ac24fd58eebea9863b993bc6a72666b226d493cf6ea93a986b0cc5