Sign inSign up
Console for Red Hat OpenShift

dhi.io/openshift-console

Console for Red Hat OpenShift 4.x

CIS
linux/amd64
alpine 3.24
Tags:

4-alpine, 4-alpine3.24, 4.22-alpine, 4.22-alpine3.24, 4.22.15-alpine, 4.22.15-alpine3.24

Index digest:

sha256:277f7fe50483d0c164f8d47a19fd6c5e72fcf020fda15b0c9a4faedc82e9d389

Manifest digest:

sha256:969e007df351b768e599a0d27bea3646ebfe243c68b95c763f52ea362ea8c211

Size

26.32 MB

Last pushed

5 days ago

Vulnerabilities

0
4
5
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/openshift-console:4-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/openshift-console:4-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/openshift-console@sha256:933ceb8413bb83f4bb6052d91b9e63f146822d50291189dd58b1b11a7f9bb55f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/openshift-console@sha256:1991780e1e824b17d3166490067029ddb66e896d592b234dc76eeaf485969184
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/openshift-console@sha256:21c5b0a59e4a62459d55539019c4d7b2ca00abcc550e7640425c804f58ad000f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/openshift-console@sha256:87c29d1b279d9312b9be1869d276c4c55547154d14e9970f8ad4e5bfcfe164a7
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/openshift-console@sha256:48ae5cebcf88bdf7aa091810d8216e89ff1387ebcb667edbab5db9fc38b50537
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/openshift-console@sha256:ca46a316c05496e7191e976f86e55dc2e7e2ea39ff0d22a65848662fe37f8de0
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/openshift-console@sha256:39f2eddcbaf5cbf3b69dc1223b63d9b5fe7446194a8e9dcf2a66a162bd17fa0c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/openshift-console@sha256:727f55f637325d3464ba2952851977b308db275f3ecb44e52205fcb69da914f2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/openshift-console@sha256:6fe0af165527edee2c76e35ad422042d1619f3f2959397a720d9a915715aa895
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/openshift-console@sha256:b168b7d3e1d78a4c836a7e951a7ab3494646799943bb3627d29608796ebd21d7
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/openshift-console@sha256:5bc862a085ecf3761db677da1ace96e2563b432eaaa30329999497cb762087fd
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/openshift-console@sha256:14b2359652b481ecec230cb6ada5329e292862945081851df5e30f186cf55027
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/openshift-console@sha256:bc634bc88f7bec384ccdf9fbc52f3e58f9b2991a71e6367c4497ec98c1ce87fe
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/openshift-console@sha256:d67149f5a747021d1265b9803c8f20267f9f7065ea3e2caf93206b9c688f9972
SPDX SBOMhttps://spdx.dev/Documentdhi.io/openshift-console@sha256:0880a3a6df060e4b38db34b0493831ee149b28618c5f11462218a869ba83a217