dhi.io/openshift-console
4, 4-debian, 4-debian13, 4.22, 4.22-debian, 4.22-debian13, 4.22.16, 4.22.16-debian, 4.22.16-debian13
sha256:e1f486b59a411ceedc8e6072fc6bf178f7a8c0e8efd220d402ddc0fa627294f2
Manifest digest:sha256:731fb70e4bdc3c5169c1c65eb29e482a14b9912b5f2c890ddda213b74346ffe2
Size
26.58 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/openshift-console:42. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/openshift-console:4 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/openshift-console@sha256:e077d8fa2873ab53ff751576a4bedec8654333ce9333361f6766be1cd2e058a5 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/openshift-console@sha256:515e7e5fa174edc4023857adceff9a98cfc561bb377fc4f5b90ba2b504912a98 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/openshift-console@sha256:c9c4abcda41021c988da441bf6208e8f6330f31589f59335dd9ea67325b54c65 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/openshift-console@sha256:16898051f751810ea6e8848b659cc1b4d943d601943dcc248120872f7eed4867 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/openshift-console@sha256:58aeaad51a3895bd9de789e7b8eb491f6ea3544d04f94701f600a9b49ec7194d |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/openshift-console@sha256:62457ebf367a956987fcad1dd2e4f61d5878e72f1895294bd024ae071c16595a |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/openshift-console@sha256:1ace173aa4ae8fc54ac01cf2e38b5adac49d8f9e6ea6225492830bb140c822a7 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/openshift-console@sha256:4e8ccd422bf6adf402340d2fc9f39133129001da05504d4934eb1a5c761fa852 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/openshift-console@sha256:43b32d8a99287475505b6a23bfcbef47b769abc5f738d2098c626f995def2d98 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/openshift-console@sha256:3d745c25ef276587bc00ee947dc03e2471722a47e3581de0cfa62d792e36b38e |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/openshift-console@sha256:474bbd8ed3db764725ee6fc6c115d0d69caedd9baf5439343d6cf2255d5203f7 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/openshift-console@sha256:fdf7f7290857761f2043a930f302bbf3b492c6925b48abd31c81e75a230bbd7f |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/openshift-console@sha256:0960ee96e5bb1fe29635309ff46bdb83165d762ff6944445e4ebe82a9b5598dd |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/openshift-console@sha256:52dfd0d5bfe5e3e21008c43c7d55cbb94d5df279bd1dfd744533df919da0cce6 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/openshift-console@sha256:eff0a2051742538b586fc7d210889479e6f97ce601772f4d896fcdf1cbe0a405 |