Sign inSign up
RKE2 Runtime

dhi.io/rke2-runtime

RKE2 Runtime 1.36.x

CIS
linux/amd64
alpine 3.24
Tags:

1-alpine, 1-alpine3.24, 1.36-alpine, 1.36-alpine3.24, 1.36.4-alpine, 1.36.4-alpine3.24, v1.36.4, v1.36.4-rke2r1

Index digest:

sha256:c859fd6bce83ff617ac1af8be106267d652d76915d362e1d5222ac519a22a03c

Manifest digest:

sha256:93a8cf1387a635eaa4532dd41aa5fa1547c80ffa29b568931d2098237091c815

Size

154.56 MB

Last pushed

7 days ago

Vulnerabilities

0
0
1
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rke2-runtime:1-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rke2-runtime:1-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rke2-runtime@sha256:f2c1d650d0c5e9e0f3dc50d895147466212ecb24b93d11743e853bfd0c4ff321
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rke2-runtime@sha256:2df5220ef3042131d2c64fb1edc98441af5fff72d2447711dee06e2fcda9692d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rke2-runtime@sha256:0869d25545e5a45dbab785a3574c9f3c75dbe8b5d73c0292966578bfeee0ef5b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rke2-runtime@sha256:6949dc2d27d927eb7b8996ee7bfb0e4114074be18bbc8d69399ae44c8aab129e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rke2-runtime@sha256:11d7aad9ac6fc3b159764da1d4c52519dd5e00ab1734e47fd60aa212e7907e39
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rke2-runtime@sha256:faa4bd791b31b13684019a8ec8df608f25e926f49210d5915dff12633f614d41
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rke2-runtime@sha256:be8aaf96e926453f43eff24c12006bcea9691a596c35783981d11563e5fe2998
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rke2-runtime@sha256:e010870d2344dc155f6c9f88b7d4d061eb946c1802735bff1a521f0462047075
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rke2-runtime@sha256:eb475458999806b34478204d8f5165c85cb0297527d89943e046856cf6e9f58b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rke2-runtime@sha256:f67865d2b485e42cc5d081d793b79117d4cce41da642bca1eef1706ae7b9e70e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rke2-runtime@sha256:7aee779f5862d454df6e07e49b8806260438c0196b2962d74788621fd6926efa
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rke2-runtime@sha256:e54e30d1448a870983db6f3713073cf1613b551127b36d0b5b8347ca0dfe2ecf
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rke2-runtime@sha256:7056329198a77ea66dc845a4ce2841d951b65df3b4f63eef02db4f9f1759c03c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rke2-runtime@sha256:3f5b7803dfa078914beecd80a9a93b76df35789017e4362efcf66af09985a1fe
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rke2-runtime@sha256:362450386e843e75e0c1578162e8e04d976cebb677fb01d98ce2921eb391ccf3