dhi.io/nginx-ingress
5, 5-debian, 5-debian13, 5.6, 5.6-debian, 5.6-debian13, 5.6.3, 5.6.3-debian, 5.6.3-debian13
sha256:47eeb0d605fc885b59f6acc6ccbd568c039ace2124e2e1eca1a89c7384c1cc76
Manifest digest:sha256:a5581b618d4f8415183620b65638a1ec297e9648db53b35235a61698c17200ec
Size
83.78 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/nginx-ingress:52. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/nginx-ingress:5 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/nginx-ingress@sha256:05685b41ca9eb6cc8f9e9c1fb0abab7a8c88eccb0d18df83c2c7047f9fe16a43 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/nginx-ingress@sha256:79702369fbeff4ef08be4b1ec6978eb857665acdaa3e2029078b6f24c85a31b4 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/nginx-ingress@sha256:9914eea04316c8387ec101a201fb2a531a61ea96349f5be013452ae0a9c3cbbf |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/nginx-ingress@sha256:b0775032162f995d5c2540e41873e3f48def5d041d3d19d4b1bf1f65f6cd9adf |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/nginx-ingress@sha256:7f0e1343f69cd881f5948c1563f93556d957e6b764cfc7421e084c7c7c4c5408 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/nginx-ingress@sha256:2e46f9a32d4da9333281cc2e9d1cfd4cb2b60820016427f312ff633f0453f583 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/nginx-ingress@sha256:6b7bf4b888e5fb7b8c97de2eae216e6d95501e03d9b30da7476dae4049bd17ff |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/nginx-ingress@sha256:79f84e34f08bf1a7328d78e3260e2b13fb4077666733836f2949a7fc2434aba5 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/nginx-ingress@sha256:5cebb8652772aa8e9f387afcea2f03ad4c36d72eb671ea69822b950c24ce33a9 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/nginx-ingress@sha256:26c372c9ae99e973b263af90d561edef7dfff35c590c0931a8921ed792b85b9e |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/nginx-ingress@sha256:32fdf1544eadb0f79fa27f14dbc71f40af27144b736b971e8b1ed833e279875f |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/nginx-ingress@sha256:90b54d897f8003abecae050bda96b1e4655c5899f72cf01ddcfb52928ebf57e5 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/nginx-ingress@sha256:9488067c1fcc6037fc4619985165d2b083616fe590fa8863f5c63a27e3026d40 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/nginx-ingress@sha256:33289dc7124d5dc1fe25c2d6a603fcb4134f03873c48e0eb8d33e90dee34ee8a |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/nginx-ingress@sha256:e33b15009a3698bce77344fac3423d1fa242dc1a430454da54159003c55d5e7c |