Sign inSign up
NetBox

dhi.io/netbox

NetBox 4.x

CIS
linux/amd64
debian 13
Tags:

4, 4-debian, 4-debian13, 4.7, 4.7-debian, 4.7-debian13, 4.7.2, 4.7.2-debian, 4.7.2-debian13

Index digest:

sha256:0be7c0ed550641b90da0031395212d71af589142a9bd651f4c6e2f0b01a10197

Manifest digest:

sha256:0079c141f22cf110be1ecd8d042d3fee2462e4b96876ea2002f382d565cc0631

Size

121.39 MB

Last pushed

21 hours ago

Vulnerabilities

0
3
4
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/netbox:4

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/netbox:4 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/netbox@sha256:784da4a4d95bca2865db77739b7ff172098d1f40d75b2087248f0db4cd994fb3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/netbox@sha256:df5c46d76df20a412da6f00ac6a8624c7622aa9509c2a9a7fc4af23fd10f2b2b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/netbox@sha256:02521e1ad19db0ddcd0cc436be734106f2f6465069f106a170b69390aead6e7b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/netbox@sha256:e8980364171bf8cc8ccfaef3f28b744cde1c88126946b527ec0547e99857acf7
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/netbox@sha256:5c128ca6e7fadf6b79e72ce7dfcf2af8c51894f5705c606beff1195c4168db23
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/netbox@sha256:6b5b54e793b617b7580fbca2d98e618f480995d766f75703554a65c643db83bb
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/netbox@sha256:ba21e520faffec49e6b3af1d7fa6c7e30b7ba8e28b8dca0796f1134df3f67a60
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/netbox@sha256:c398032f6293cb51b11a053e23a10d96c0a6523353bb1672e114baa59cde5475
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/netbox@sha256:4016e8021211c58f752f594db1cc43dfcad745adc9911222bb20e0aef62c5e35
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/netbox@sha256:f11779b3c286b6f5e3c3d72d7b11a69eb224a7b78e0c46d623b578a893f0dbfa
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/netbox@sha256:4eb75a9c255594b37e3966357742cf3b581f64b1bfd82316dbe5a7d3872e2b28
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/netbox@sha256:c3ecc36ac9d9703c2fecd7cf8bf088c093aff234e362f19d84b4f427279ba840
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/netbox@sha256:934105064cb34898738b0d0d0900120abe0d59a2829675893cc1b62e51b95ba5
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/netbox@sha256:7f5a7851ec3d2ff27bf18045845b34513f2c2145577143c8ee018a2a2dbd5bde
SPDX SBOMhttps://spdx.dev/Documentdhi.io/netbox@sha256:b0a3cf28e2530f365c14d80ff52e4e6932e5f1972215d83f2740d4c6d5d36761