Sign inSign up
Patroni

dhi.io/patroni

Patroni 4.x (pg18, fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

4-debian-pg18-fips-dev, 4-debian13-pg18-fips-dev, 4-pg18-fips-dev, 4.1-debian-pg18-fips-dev, 4.1-debian13-pg18-fips-dev, 4.1-pg18-fips-dev, 4.1.5-debian-pg18-fips-dev, 4.1.5-debian13-pg18-fips-dev, 4.1.5-pg18-fips-dev

Index digest:

sha256:f6be9cac977551ec90f16ae8da3b42cb74ba4169b9a9e724b85bb7c122bca4fe

Manifest digest:

sha256:4053dbf73918006b0aa560e2fcc1736ff178bd836336596ae3a389c3f522bcbd

Size

180.41 MB

Last pushed

19 hours ago

Vulnerabilities

1
11
9
19
16

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/patroni:4-debian-pg18-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/patroni:4-debian-pg18-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/patroni@sha256:067a7f873c2dac76d9c9830d68c16e371fa93c5fdcf61b982194a4f26e101794
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/patroni@sha256:591fc3a04cb9843724578fad4e51004a323e76ac7eaa390e0d919131d746db2d
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/patroni@sha256:6dc2eb88800090e0eaf527be4c36824148f692131c3e89f1972d24766e8f4672
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/patroni@sha256:12bf6c14c348532e33c16968026c90b7b43de2cd7eedf5705c8c026abcf5078b
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/patroni@sha256:abd20d4a3aaf5ff5382bba3ab4414401e6415ad0de9fea8c20644f780bbbd756
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/patroni@sha256:e61aedadc561cc2313f15f13ea21e0a305c6cb3f3ccf0de8b8c51537da83f5f9
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/patroni@sha256:231016d4641f183db826602042b30916f1b6b82b4f0dbb31494b6df1ee1ac3ad
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/patroni@sha256:72f33a005a9778c946607ef9ceca9b60a751b47026597a799172b6c55ba37268
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/patroni@sha256:0d53dd481b9ae99a46871f43cf5136ba8e32914edb337fd4afeb5825495c804b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/patroni@sha256:22d69948673e4b34cc70774ce928e0c3c722500d3fdf4a4fd2b1338854ccc806
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/patroni@sha256:3fa4ef4735462f4427c021666fe179d5ea78ef221cd461d9306a5239c2cf4e32
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/patroni@sha256:f63732209a01f7e5cd98508016c56ad466843c4530386c248d7deed9525324c7
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/patroni@sha256:720f852fae1593afedc6e823c1491a5b38fb481058788d49757cc0759a6fc546
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/patroni@sha256:532637b8e7985c6045fc7644b347663e27d29426d5d8559f139e38d5be8cf278
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/patroni@sha256:b72a51f7eb780aa8e9b31a4e2b008be8d862b4a69206449c2d68f489be432279
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/patroni@sha256:464ec1e0657b5996ca8e1cbf36614aca33163cab13f0fb0b8467efced6974197
SPDX SBOMhttps://spdx.dev/Documentdhi.io/patroni@sha256:39d53f4a08880488c391792a7053d84f5bd8ab96330fd1922f44e72ea7ff08df