Sign inSign up
Rook Ceph

dhi.io/rook-ceph

Rook Ceph 1.18.x

CIS
linux/amd64
debian 13
Tags:

1.18, 1.18-debian, 1.18-debian13, 1.18.11, 1.18.11-debian, 1.18.11-debian13

Index digest:

sha256:803e255493a5ae71b867215795e32e81ccc719e0b2477bdb78079e0a99a3b9eb

Manifest digest:

sha256:03bcb225365bf4ed876dd70b3460bd3ee9ca9ccb4a2b3326f4c6e61c87fc107c

Size

325.59 MB

Last pushed

1 day ago

Vulnerabilities

0
8
5
6
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rook-ceph:1.18

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rook-ceph:1.18 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rook-ceph@sha256:d92e0ecd9137ed4f63673d66bfc6be1dbebbc99c43084ac4e56887da138bc68a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rook-ceph@sha256:633c3a7a12c3ed172f25129b4488d96fb1a1d63e26b5e3c49c7d1ef3a0c939de
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rook-ceph@sha256:e8c2ae9669fd1bf0cb6ad502f6480ec6f2d05ea0e31a972de10f3a5e11639aba
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rook-ceph@sha256:8050af9216b76dd8969f1181ab19d6e3e29616e782daacb895c84aa9ad179365
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rook-ceph@sha256:2fbd45236129b0705cdeb092115ded6bc4d57f5be84b7ab743bbe7ef2e5e841e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rook-ceph@sha256:923faca228734ea1bab53fa0ce60068a0c46cceac96cd3b047f4a74a2c8e03d7
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rook-ceph@sha256:f47462b38997903d0544f2f12c19a23eea4c5bbf9e5de46d521ea250447b3136
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rook-ceph@sha256:d755842f8e37e04a4c8590e7c8062b399858e75595c354c0d2fd3d7726f1aec4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rook-ceph@sha256:59b3f858c809e80d4b111c590e5a1ece0c117c1a1af6d3e551d3d6ae78bac4af
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rook-ceph@sha256:37d4d6f6a06aaa301b60401a6ce24ff9e3f5e02def2abf56dbe84fe9023d7f04
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rook-ceph@sha256:2da60acc382bcfdae920ac0dd56e745119185af4b419cb7d3156f18da7606b18
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rook-ceph@sha256:6986e78358d3c48f84d8a0019c63d3fa5d4cf2c5b18924ac4a620f7dfc026eee
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rook-ceph@sha256:bedc8a3fcd2923115511b31976e029019d3175505f930af7f617c5dc59123787
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rook-ceph@sha256:ce11cb7e1af06e68b0b4b79dd1baddc122b3d080b17576d7aec93d9e714999be
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rook-ceph@sha256:98f62363076cb2473e6ce9cbf8da8af9e1ecd2fe3c79d858a4db32927935a762