Sign inSign up
kube-mgmt

dhi.io/kube-mgmt

kube-mgmt 11.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

11-debian-fips-dev, 11-debian13-fips-dev, 11-fips-dev, 11.0-debian-fips-dev, 11.0-debian13-fips-dev, 11.0-fips-dev, 11.0.14-debian-fips-dev, 11.0.14-debian13-fips-dev, 11.0.14-fips-dev

Index digest:

sha256:22c869ca2b0225e7b9645bb32348bbb71d103459d25038e92a27d8a77dee8448

Manifest digest:

sha256:0512468288a967ab8f702109176a167bee93f35ea86c6e41198cdd5613280b25

Size

51.94 MB

Last pushed

13 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kube-mgmt:11-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kube-mgmt:11-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kube-mgmt@sha256:5def5cba0e3e3d6771d879012e5dc1754d983523e19d0cc313ef81c58479e5d8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kube-mgmt@sha256:413f97f18166a00a9a7be72184ddeb641e0aa0504d438e7e8fb4fc7efafb34af
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kube-mgmt@sha256:68b233762337b37b54a14f4fbb4cd159ea55ac0babc0bd42b0365fa043888bb2
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kube-mgmt@sha256:906b6620ea810ddc8f34340f62b876456102893c0f9602b69425e346ac3b8827
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kube-mgmt@sha256:fe89afad1324ca6cebf3228c1682baf0c8cd2d67f57e07a848e05399800741d6
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kube-mgmt@sha256:17b80f2f8749009c0607da4166c877eb8189180e486a6a71cd72bc1377c759fa
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kube-mgmt@sha256:91f0a418ba9c51c4e48f1db0c96b4f903d604301a909246d11eb535c2374d252
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kube-mgmt@sha256:930da5af9b40f5a57014e3903bf0ae7ad87fe1ee6ed9fe63bab0826987d0f178
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kube-mgmt@sha256:626348a280bf5a4aa760e8b21e07171fe90f1e511a1db7cdda076a8de70421b2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kube-mgmt@sha256:3e02a6eed0836fe7ad90feab666acc5f948061fd6852446c8e84d837b2f74071
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kube-mgmt@sha256:1f349ae61d7314948ec87761f530caa60209d8a95ae3feff82bcc6eb50f996b5
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kube-mgmt@sha256:6b898229d660a63353db49f1080fe6e4168842438ded2541c3d6823d9339f254
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kube-mgmt@sha256:6b4ec0e4b46c4c12940e3ea0c0b1565dcb89675d01b1c79c0308edd10b1b3ecf
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kube-mgmt@sha256:7529f28474fc479577fa47afc5da66f80807d7690744cdd53cfcef4345e24458
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kube-mgmt@sha256:8b38b3c3711e072cbff01de6a4677ed946bfb02323ac4dc1a7353140eb1d03aa
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kube-mgmt@sha256:43ed11183d269c668421248f96374f5a4fd5de94f4bf216cec82a9ae01a148d3
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kube-mgmt@sha256:924250edbfd5fdc91876740f1859c3a6addbb08510fdd0d608f022c77cdae7be