Sign inSign up
Console for Red Hat OpenShift

dhi.io/openshift-console

Console for Red Hat OpenShift 4.x (dev)

CIS
linux/amd64
debian 13
Tags:

4-debian-dev, 4-debian13-dev, 4-dev, 4.22-debian-dev, 4.22-debian13-dev, 4.22-dev, 4.22.16-debian-dev, 4.22.16-debian13-dev, 4.22.16-dev

Index digest:

sha256:3a0105375aa5d4fdd43a2136686854a9510501be2301ef62cdaab5139adb8fa6

Manifest digest:

sha256:d1d8c8dfba648b7f07984f4075aab84439e23f5974ed746b5836eca0653cdcaa

Size

79.95 MB

Last pushed

1 day ago

Vulnerabilities

0
3
4
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/openshift-console:4-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/openshift-console:4-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/openshift-console@sha256:499571f80b03539d1dfd879a0df6b3b88ea49d506bce55fec7061ecb7115b642
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/openshift-console@sha256:e7a8510797cecd4e51cb8ffc3864d1a29dccff5073c81860b162d0bc49dc6f17
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/openshift-console@sha256:9f00911f70b2b839017f2eb4bfb8c76f499dd6f47b23da1eec7ed92f1ec68af8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/openshift-console@sha256:7f78dafc4c8ee594e43e1c5f07ffae01c94e50fcdf989dd0e1955abb3ae1ca24
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/openshift-console@sha256:b8e0f62703c1d673c6375c19f505f57e5b0403d233e0e8dbd9c905b2611bc8c3
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/openshift-console@sha256:4655d1920e50e8c489ff6bafa869d5e427982c4214ae11a199ce65f38683b94d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/openshift-console@sha256:e64bcd3712efcf589e4c3c1a1642a6df268a31d1df1874b9b9456235e8d396df
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/openshift-console@sha256:e2b1671694a6f74d7010c4f27d9e9826ad194c55eb2864c418850abac73ea0dc
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/openshift-console@sha256:d378c28752e1e09e12ce15f503cbea6558dad5663e1a976ca1cc0a048ebc357f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/openshift-console@sha256:6ab0b8b1219d57d104a257436b97803753f82c92c37452dcf77664191e706b01
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/openshift-console@sha256:c298ffc143cddc15f8e41fee48887d6d362455d8ecbb3be3f80ab2ff30f2e808
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/openshift-console@sha256:a4a676810d481f2b93138b94420746e489cefaba2e86de124969e131fbde8003
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/openshift-console@sha256:7dc3ae48fb2269d4e53bf7fbab589a116ecff2640ca60b0fc856b25a9ede3738
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/openshift-console@sha256:4e2d64714bf3247767fadf3b8f787952a9e99e0c785ca34bae2c2227d0ae2add
SPDX SBOMhttps://spdx.dev/Documentdhi.io/openshift-console@sha256:aaf647ebe4fb9ec7d2c86df8b49bd134d37af5ba9b99b344a0fa6030fc15fcbe