dhi.io/openstack-populator
2-alpine-dev, 2-alpine3.24-dev, 2.12-alpine-dev, 2.12-alpine3.24-dev, 2.12.8-alpine-dev, 2.12.8-alpine3.24-dev
sha256:b43185c8d472832b23df1137e4baff4bd7ad167e9e674de9b4bdadcf85a80361
Manifest digest:sha256:153a7955d08ff859df37f13f1ed6ae29cde95a61206f82127b06fda395d1d65b
Size
26.91 MB
Last pushed
5 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/openstack-populator:2-alpine-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/openstack-populator:2-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/openstack-populator@sha256:ef59b832c33625dcd7ba9384c4d524b8996b913aa7ec9db811e26b2836190d95 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/openstack-populator@sha256:394d123380505d30c49920f3e368f122f111d06b836d4332dee7750827334b0c |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/openstack-populator@sha256:54a0b66393a2e23ac1daaa8eb86f669839440790e6a381fdff549acb99b770f7 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/openstack-populator@sha256:1066e6023feff727e2df298eedf0361505e519be9f247ae32ee9e8142ecce5db |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/openstack-populator@sha256:9f9db10634cc1b265bed70ecf0c067d5fb299837f4aaa0a83eac8d53184b6bbf |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/openstack-populator@sha256:a5472863231e2afdebbc8188f798d79dadff45ac2de49562f696f89715af9a6d |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/openstack-populator@sha256:822e00ef1e4ea1e81940e1a82de4e4f046f890e0255fff6342643f69bc1aaa9c |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/openstack-populator@sha256:980592626397dfee38c632d2fa3f4d0adafb8a8f110179d6b75f7526ccf37248 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/openstack-populator@sha256:5b0eebd55494a39e9135225158c3e37783f18d75ab7846e09d376d656e2dbea7 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/openstack-populator@sha256:c7f1b482cd64c74f48e3536f8d4ee5b69f21137f0991a91355da6697f2db6cc9 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/openstack-populator@sha256:595314da01a803b8bf6eb83f369c7b26030c080068ddd4f702f7d4bd8d89cc7e |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/openstack-populator@sha256:fe547f5d760a3d156f62d412d53a51bc91ba5dac0611e122b069347d9e25f626 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/openstack-populator@sha256:4c10f15fc8cbac88996ceff04fc006b08ba5848c954a0eca070cd3e7863dd899 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/openstack-populator@sha256:47378eb9b84ffe3943d3d75959c84662646390f5b722b3041e6fded905bf64ae |