Sign inSign up
Forklift OpenStack Populator

dhi.io/openstack-populator

Forklift OpenStack Populator 2.x (dev)

CIS
linux/amd64
debian 13
Tags:

2-debian-dev, 2-debian13-dev, 2-dev, 2.12-debian-dev, 2.12-debian13-dev, 2.12-dev, 2.12.9-debian-dev, 2.12.9-debian13-dev, 2.12.9-dev

Index digest:

sha256:895be9d820dc63b3208564ca08adba77defa4235145a8ced8cae981035ad23f0

Manifest digest:

sha256:ef0c8925fe12e22ae0d7e05db5a2a2ca88c6ba7c18234c2950ea2b3033698f1b

Size

44.87 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
0
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/openstack-populator:2-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/openstack-populator:2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/openstack-populator@sha256:4d162da5fe439d4f377989e9bc37b67d029e2cfa92496e5402bb6255f3ceb4f7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/openstack-populator@sha256:f2cb75f1a76c41ac5fbda19805de9dc01bfd420491133f23748e9ed806a562db
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/openstack-populator@sha256:a9d82cbd579d3b8ffc2e1b04144c0dffb273aa0727cc1522d99b299224dc11ab
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/openstack-populator@sha256:6596532361aade84ee66cc0bf4a6ed1735f8f5c92d65e26b725e85d6ab3b6bb5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/openstack-populator@sha256:38da5917169dd69cfde52612c37827257b0517518868eedb294334563bfeb79c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/openstack-populator@sha256:c47d93a9964806bea180772a83e1c9a2c6fbe6ce7d1e06fc02e11762c2577218
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/openstack-populator@sha256:99b7956216eec3ef674bb5eb1b7e00c242e0dc6fdad4ca67536ff15852bfb7dc
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/openstack-populator@sha256:eadc63bfd950ac57c6e7b47573ddbc158c3a445e8a6675e91129ab75b8f4d429
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/openstack-populator@sha256:d30cdf79fe313824dcc8f849f6b988ef2402a980745120903de65b638cb0b253
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/openstack-populator@sha256:e053d0dba322191507255008ab17de02e5b4ba248d4c49c4d9f4e1fb3cc5dbf3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/openstack-populator@sha256:3adb1893f6c85a3966196a7538829f9ecb827d94374b9036866e158a6642b496
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/openstack-populator@sha256:b11230aae2a56698c377801d7a2a07022dc665fbb7d8c03133d3cc49ae0fb075
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/openstack-populator@sha256:412bc990dc5fc131a329df4c3429ef0a9a0989bebb9b3d4cf87c2039f014c8a8
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/openstack-populator@sha256:5b14b5204993dfe1b9a108d58a53e864dea989d02a4a250a8ad4a46c26cf4c00
SPDX SBOMhttps://spdx.dev/Documentdhi.io/openstack-populator@sha256:ccbd328d780958a1646b979eb60482539c2eda89ac61ea10e60357c3f6d78096