Sign inSign up
OpenSearch Dashboards

dhi.io/opensearch-dashboards

OpenSearch Dashboards 3.x

CIS
linux/amd64
debian 13
Tags:

3, 3-debian, 3-debian13, 3.8, 3.8-debian, 3.8-debian13, 3.8.0, 3.8.0-debian, 3.8.0-debian13

Index digest:

sha256:a693b09722cbddb91d100d22a458e3adee7b9f6f5f309c89ac72b2416230d709

Manifest digest:

sha256:c2bef32477e3a1026eec3d9ab24cf7b4347a6f749055698249c57bbb956a084e

Size

298.31 MB

Last pushed

1 day ago

Vulnerabilities

1
14
10
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/opensearch-dashboards:3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/opensearch-dashboards:3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/opensearch-dashboards@sha256:e196b4bd4d1c5448527aaa5d0f1c9c6cb1714f0069928099c36a8a48c966f5f8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/opensearch-dashboards@sha256:b5e2aff8d33a88d88dd019eb91b1f5e2c64cd0cd9f24d6a0977e9b5acca4c116
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/opensearch-dashboards@sha256:b46558f546de79db9a1eca3193fea4399f49153346846299ac9666a12468c5c1
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/opensearch-dashboards@sha256:56e914317949ccf68b11e079740c37940949f44a1163ff9aa52b1fb487d86d09
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/opensearch-dashboards@sha256:881d658023e69a861e2a7bf861774513bd172f38bb1b7cc3b662232c9038d5aa
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/opensearch-dashboards@sha256:d9cc80cce0d434820d32216f91448d8204fcb79d13b7de281d5d67cdfab394ce
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/opensearch-dashboards@sha256:a4373d1976f95033afd110be10e540cac42a7ee17414f178c00c2d4e68141c54
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/opensearch-dashboards@sha256:40b73fbcded7c7eaecd433a23acdb13e54fe0222765407e431dc62a3412d0199
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/opensearch-dashboards@sha256:ae540a2680739be161c748777d6fa8f44227e75e68e32e1da620e235d9a904a6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/opensearch-dashboards@sha256:78f3d525ad52f542857e8fc3c0a96af17d06ced719b5a0303d5cf4d976c8e043
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/opensearch-dashboards@sha256:9cc6e7948e751745a4d991b04b0abc752657d8162489030c63be806d213a4b0f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/opensearch-dashboards@sha256:6629ce90d466d54776dd8731e04ad5351a28aef2d3dfa1018674011e1b40e7a1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/opensearch-dashboards@sha256:184e14d9707d730bfcf1e8191c241612de4d9dad17f2f0ca314f53f3ce5dce8a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/opensearch-dashboards@sha256:d4fab5870c4b9cb85ae7b0401afe33deb51aee43e811a89ddc3486726b3d81f4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/opensearch-dashboards@sha256:f0aab639b172042af0bba656da35d6c4b964c3cbb9d9057e17f868ff6568a077