Sign inSign up
Console for Red Hat OpenShift

dhi.io/openshift-console

Console for Red Hat OpenShift 4.x (dev)

CIS
linux/amd64
debian 13
Tags:

4-debian-dev, 4-debian13-dev, 4-dev, 4.22-debian-dev, 4.22-debian13-dev, 4.22-dev, 4.22.15-debian-dev, 4.22.15-debian13-dev, 4.22.15-dev

Index digest:

sha256:aad12387b30e614db629dd85e6052ca17c50ab00bab282ca89601e4e7b78ad9e

Manifest digest:

sha256:782e1e4596db2544070e2fa2f117030b07ebc3ec2e68778ece1f457b37565f27

Size

79.96 MB

Last pushed

1 day ago

Vulnerabilities

0
5
5
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/openshift-console:4-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/openshift-console:4-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/openshift-console@sha256:1c7400b51994fd38d8aef19c2e1097ae5f4a0e7753b60a01da9a359167f48181
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/openshift-console@sha256:2c1280b204d6d6e7bdcc8df306bf292d9038a1206cb9662ecd9c42ace8f64a69
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/openshift-console@sha256:c6f5d5cbdcd0816f6c5679749c58fa37a85f57720d8c669b6ca8e567c5c9fd31
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/openshift-console@sha256:976fa7c261bf6507e3ae17eaa901f946971addf8b1104395a40f5ac9d5f31a05
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/openshift-console@sha256:849760845e2494c98a2c0aaa631318a36dfa2eb48848f4e61747f13e274c04f3
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/openshift-console@sha256:9dba7f47dc559c56e5b909bad991d139a136c9ee52a4060d885f5c9bce01f883
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/openshift-console@sha256:e0365801970f38992602dc4a994857b8b5d145923854bf19158b7e51f7d8c95a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/openshift-console@sha256:7f1120b1c682c73157e608c82344856ed5ffa44a0dada8d5f9733adda18ae1dd
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/openshift-console@sha256:46501f808cdf315103cb2e5dc6e8a85f339d122ba90216c7deb792969534c888
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/openshift-console@sha256:5cd1dc08d6c0fc876b95bf51d893fbad819776ddec5aa6bbd49308f44404b745
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/openshift-console@sha256:e643a73db3ab9f3950fa411a53cb736403fb65837f9fafaf0e72d00d9b75e0ff
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/openshift-console@sha256:7ae92ceb6fff4a24602166ae91ed18df0edeffd141f654dcf5e540a1cdc4dd6d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/openshift-console@sha256:ee1810411f4a084935e481cc3519d614472423886eb6120b5a84de6e851c76b2
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/openshift-console@sha256:2e228d8d30b69c3f0c6e1a362b56cdcc41074982f4b04aa8c683e9b57a382038
SPDX SBOMhttps://spdx.dev/Documentdhi.io/openshift-console@sha256:76878613224b06c97580f470f583fa53c49cea1cd2d85debb7c7b4f6e8b01121