Sign inSign up
Qdrant

dhi.io/qdrant

Qdrant 1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.19-debian-fips, 1.19-debian13-fips, 1.19-fips, 1.19.1-debian-fips, 1.19.1-debian13-fips, 1.19.1-fips

Index digest:

sha256:2844d23eb4f484216b7e9b72fc5b096cc13b5efbaf6968739d05b9bf8f0aeace

Manifest digest:

sha256:dbb0bad9e7f00bdf93a6f03862068d275146d1d3c640a14a94e19bfdcc39eecb

Size

39.75 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
1
6

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/qdrant:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/qdrant:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/qdrant@sha256:69d29fa6e27dc4d6e9dec7c1d0e1a3d2fc8f83d3a82eb7dc72f52f68958e2635
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/qdrant@sha256:2791779b11e57c27160092e76292a3d70d6ee5275e3e34433008459e8510f9b1
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/qdrant@sha256:11b37a2e3430157acbe278c47df24c6de6318728eb06e4165414f00dfbea32be
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/qdrant@sha256:8211d54e53aeb630875cf37ddbe88c4fbeb8f3761a1ed9ca662a819787d51094
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/qdrant@sha256:167ac765439b63558d85b78d0d4f58dd71d5373889d1acdf47d1df0e025c54bd
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/qdrant@sha256:fd5b96d32897dd39e299ddf0dd46ed8e6db6729a3effd8bfca8db67fc2a583e1
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/qdrant@sha256:354acb7baf5bb406abad490caa9fbed8ff5721269ec137405e54047ae2fe5b92
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/qdrant@sha256:e74905ac94695525d5d14537b84a4ee28008b65cf02a4cc112702f6915cffaef
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/qdrant@sha256:5fbb792e62346a7aa4febebd3308b4120dc9ca5c75654736ac497f26a87aa009
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/qdrant@sha256:acd16f3bec82887e953ed18bd6944404d36108dfc0693675283611be9ad2e27b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/qdrant@sha256:d613b3aaccbee67eaff4c237a8db89b9c7b8daad19033cc89efdeaa140c6f2f4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/qdrant@sha256:080d8387323f2cd6cde595a63f6e3d1862a32cd7dd35104a73e4bf8aaff0dacb
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/qdrant@sha256:a9321b39d553c6b3c7b7a08e9510b11763d84d1cce9948159a0268ae45cbf04d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/qdrant@sha256:35b3f271959f542807b28d9fcbb2967f9bbae4b8396bd6f6e6271201848692e9
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/qdrant@sha256:6de0404b6d68adce68cbc26ded2167c4455625c779ecae987142a6783c399db7
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/qdrant@sha256:1e899f9c68e3c071199cd9b44160081e694090a1ba0a641547a38e97e2543abc
SPDX SBOMhttps://spdx.dev/Documentdhi.io/qdrant@sha256:e86f8f2c8d9e6ee0b95bb041481ad860d175fa212158c71a5cf59df412320262