dhi.io/netbox
4-debian-fips, 4-debian13-fips, 4-fips, 4.7-debian-fips, 4.7-debian13-fips, 4.7-fips, 4.7.2-debian-fips, 4.7.2-debian13-fips, 4.7.2-fips
sha256:93bb46610dc92a7c47e508bbde2ffbac72465681f172588a9c59568fb496ccb3
Manifest digest:sha256:26dc909a6dcddec75feccdc5ee39d6619b538d765c75a3f83af7de26eeab9ea0
Size
122.16 MB
Last pushed
8 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/netbox:4-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/netbox:4-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/netbox@sha256:8e1505fdb6dc355130a796a2dade8340cfa6300a04893e2cbfe51700f550e118 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/netbox@sha256:2646e349abcc5ff9720d712bf8d53ad74ad10e9839983d93ae59d29d0ecac77c |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/netbox@sha256:e7175e91f2dc25765ea81537c101e1caf997503275929cba6075fe0575ddedfd |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/netbox@sha256:93b0e0d34a8abc2455aab086a32d8503fd9f16624e946f3c87424b813ca6ad19 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/netbox@sha256:bb30cec30b50cccdea7ddb933293fa6995fad5cc3c4b915cdff483ff06fbc476 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/netbox@sha256:b18f8d7f0cd4ae21eb1b07355632335c0a0d162d66d8356ccc80c16ccd05295e |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/netbox@sha256:53cb49077ed0eff77f111a37453d952d2802c280aabb55f0baaed93e3fe4da39 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/netbox@sha256:a0caf096910e8617018139d1b79d175c09d5898aaf0db8f04e5b277f87f26e28 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/netbox@sha256:519154d11beb322414a95272ea46e2457e48f8cb14b3f89a9c1440062bbe64ee |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/netbox@sha256:3eb9871a3a10c8493cd40338ca3b74762a3aff586ac07095c23b7d6c024356e6 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/netbox@sha256:f7804bfe5f5e4367ef842ede7896f0e6e9d90d97ee60bdafc44dfec1d26a6701 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/netbox@sha256:97148eb42c42b77d5e3f78cd831113ad6b3811bf72a5fee9b04104a475ae8b82 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/netbox@sha256:5ed9037ca28ada575dd8e87f5375f9512bc0f0ffb23a131c91a149b93b1789a3 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/netbox@sha256:541a812fd1299c25e27b9e91ef7e90329e6804ffcce25f0c29a9bd1d6b8da8da |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/netbox@sha256:855bb0b7e96dcdcf4f724fee1365828b0250a7854de106fb46cd53aaab31e7dc |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/netbox@sha256:da922a6076cb9aa5aab859156194d1afb055acb8bae004c025ee2f9e7b6a7629 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/netbox@sha256:d4db3b8c32223ede42a620466afb3399715913aacf6f3f1515362a72ce73cdf8 |