Sign inSign up
Ory Oathkeeper Maester

dhi.io/oathkeeper-maester

Ory Oathkeeper Maester 0.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

0-alpine-fips, 0-alpine3.24-fips, 0.1-alpine-fips, 0.1-alpine3.24-fips, 0.1.14-alpine-fips, 0.1.14-alpine3.24-fips

Index digest:

sha256:011add3f74f76246395bcd60159ebf79e3e54b33927d86c6b6a2e56d6df854cb

Manifest digest:

sha256:a7f1b9307f7833368e3e5c8c6b7ceceeb234292e9e1eb76868ce04a40b060dc7

Size

12.52 MB

Last pushed

10 hours ago

Vulnerabilities

1
3
0
0
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/oathkeeper-maester:0-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/oathkeeper-maester:0-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/oathkeeper-maester@sha256:f41cb2d53fa7956716be65fef7e1241ed63469bf32291ea70ed81b6824a00925
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/oathkeeper-maester@sha256:e53676c2786a0bf84ffec835e3f1b78da5372833dece0209e0770e101ce830d5
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/oathkeeper-maester@sha256:7550279a08575233c92466a885863c2c1da138ea9422599feeb3193ebd59c850
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/oathkeeper-maester@sha256:83ca7b49203a73a0549a33e3457589158f8ebb74d19d179a8499b50312858bae
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/oathkeeper-maester@sha256:1b3557fcc027d3f529a5cbfa639906bf3090eb4d64c18e5f035d422c73d02206
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/oathkeeper-maester@sha256:1031db952b87f7b1f26bb0ff04c7c0cb9320df32cf166d4cb482c197173259ff
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/oathkeeper-maester@sha256:2b3bdaa43da7336833a9af30d7093e12a0de223315ed7632ca2ae701345418b0
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/oathkeeper-maester@sha256:46726829bcb4553d75a5c2b40920201f813f48e9ee322000bd60dfbd6adf5720
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/oathkeeper-maester@sha256:88990ba3c9ae7f5786613f449d130e04e541e12bb2bf7eb08cfe62fe1653a5be
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/oathkeeper-maester@sha256:32215307b8d2412a4d2ff764827a1b672f4f1fbb8ee70208a94a833d9fc58808
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/oathkeeper-maester@sha256:b0baf59892cf4b1ebd941cc2512e78a2eb694a2c203ccbd2fa587fec4c8c6d19
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/oathkeeper-maester@sha256:7d433ac78c7a50ab82d602c2d3d3f4c0864059733a8d16f13037c5f7ff24749b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/oathkeeper-maester@sha256:bef78f148bd9d163d380071d7f53e8738a10a71299e52bf4ced4142f1919c404
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/oathkeeper-maester@sha256:f5d3b80aa2dd99d0b09d4b77a7b5ba9c6caca5f4ffbf9aaa91ae81123736fc6f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/oathkeeper-maester@sha256:22df6a57c389eaa53ecbafe1a040cba1a0033238cac929b334092e10fd6bde6c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/oathkeeper-maester@sha256:4712f3cd02a39887215398e51711ce1376e36ed1916a08a699ee498d6c5f610a