Sign inSign up
Ory Oathkeeper Maester

dhi.io/oathkeeper-maester

Ory Oathkeeper Maester 0.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

0-alpine-fips, 0-alpine3.24-fips, 0.1-alpine-fips, 0.1-alpine3.24-fips, 0.1.14-alpine-fips, 0.1.14-alpine3.24-fips

Index digest:

sha256:61e164579254f52fed8771aa30f050b75b037403b4c7b7e489e67afc68f93d71

Manifest digest:

sha256:903a203e2448f9d93fba9e95d0ae61738d97263efe16b4b45a8c3392be89bd2b

Size

12.52 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/oathkeeper-maester:0-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/oathkeeper-maester:0-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/oathkeeper-maester@sha256:372af3e7a933bdfe0e1cce0bf077ccbbbe73ce5a9dd8cecbf0eda1e62a3e94ef
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/oathkeeper-maester@sha256:1d1d98eb5a7baa3512786247bcf5b5f174bbfa623d66de9a84f83b63c826da22
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/oathkeeper-maester@sha256:69ffccf61616d0f969a9e5dcc5a480c5252c91485e408654af0fd474062f53d9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/oathkeeper-maester@sha256:98ecd49c1cf5430a2e8c8f038e9042be2d6ff9c378b85c92f5611b87cb30c595
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/oathkeeper-maester@sha256:273d8938444443b698dd70ea7823fd9ae77d6dff6fea2cb7cc3a38e49673af57
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/oathkeeper-maester@sha256:226848c6cbe6eb4da03903010c888a5beef843ac017fd03653e932e6a3a4b279
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/oathkeeper-maester@sha256:c25eb4a2a10ff254f11aa346bc97802593e06771dde8e8bb2dfa326e969c9006
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/oathkeeper-maester@sha256:68644ee7b853f395835aa332db609dac428e8341a311b18e539cdd5f8007449f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/oathkeeper-maester@sha256:34b61e7ae6c38a61bb9d04c15aea20b5f6fc05c8c8746b7bce7b44b5efad18e4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/oathkeeper-maester@sha256:ee6e76e3a387e000784c1236a0f0f5e0fac03974152601f76ef6bf876d16028f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/oathkeeper-maester@sha256:7f51717c45bdde616bba69b26e34f6e4bf65c5da921f35eea25ca94134648631
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/oathkeeper-maester@sha256:158459d6f4d59a37274e981646be23386e6063c6359433a0e258b3c7d6e14bd6
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/oathkeeper-maester@sha256:1eab086370dab5ebc65c555cca6e1dbd92a806578559cd1a432d8e2cda4df1d2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/oathkeeper-maester@sha256:a141609d6bbb1829eb05da7fc0de8bf9c530aa1a8d42d2e8a0070dc218ef26da
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/oathkeeper-maester@sha256:7a36028fc162aad5fee161a75a79ff229c41196d845f8552cfe1cb41deabc575
SPDX SBOMhttps://spdx.dev/Documentdhi.io/oathkeeper-maester@sha256:10a2c3f0a58932a6329c67e2505a0d6b35847836f0686ca1edbf0ed696756592