Sign inSign up
Rook Ceph

dhi.io/rook-ceph

Rook Ceph 1.19.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.19-debian-fips-dev, 1.19-debian13-fips-dev, 1.19-fips-dev, 1.19.11-debian-fips-dev, 1.19.11-debian13-fips-dev, 1.19.11-fips-dev

Index digest:

sha256:ead11a62355a7d67bb353e1af06396056ed1df738ba2dca5bb923df79d282013

Manifest digest:

sha256:35117983c563a3f9d08a2b8bd26522899774912f2caf4bb9aa81e090e98ac7ea

Size

372.62 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rook-ceph:1.19-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rook-ceph:1.19-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rook-ceph@sha256:2326100e65f4a475e2665da7f8a5fe5705b54071d090a6a424d03109f715534d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rook-ceph@sha256:e478094b484c86f9b89c81e27431767c708dd3835cc5e28bd1d45b26b1bad891
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/rook-ceph@sha256:df6d0f39921fd4c4ab428902cc8ba0182d4e6365120f73291868c041b00f7a7d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rook-ceph@sha256:e62b7939b70cdeb2fbcada7084a1723d4e70b2a38b2b54ae99021d2972b3a131
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/rook-ceph@sha256:5bbbc201f08a5012024fcab24695cfaff53fb02d6df779c948c3ec343feed757
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rook-ceph@sha256:650bf1fd0c22853e95d8783f87c8491bc5c545d2a455866193492cb45cee0b30
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rook-ceph@sha256:3b6cba5a134af8bcc2aa395993b276020fcadae0e17ce86c64f522f19b4a8750
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rook-ceph@sha256:bb0f316d0d4f39bc526f105ac2497ef67ff0ee78b1d0136a4b8fe99951da3eae
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rook-ceph@sha256:0b6f14b8ac539645fff4f37d8674d6463a412163a9a2a8bd032fb376603cbf99
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rook-ceph@sha256:ba9d0cd69b7a54fd3ca217424eba74726ebcb818e6abc0a37f56f00650768c6b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rook-ceph@sha256:b5634c86452e9b9ff545fe8ee4bb7b085eb2bbd4fa007c08a1bdc9448d54aa10
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rook-ceph@sha256:6a5bdb59142141f251baa5e1591235436b5d1e20faab85e1cc6d6a3c93936416
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rook-ceph@sha256:6fb64d6a510fc351a1fd54148c2db6e260d9adee8d5a2a58fff7c2a449b6dcf3
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rook-ceph@sha256:6845b8b8e6ca1e376622971767f08b0765efe975bd841b0f93c008f8d4d72dec
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rook-ceph@sha256:9865548f6d0c2f939a22a39ddfd11348f2c46c2086571aecff872b65eeb1ca52
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rook-ceph@sha256:05865a7a0d42813155e94ed855907b396ee474eb4241ed5e6832aee995afabce
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rook-ceph@sha256:f3d89a9695bbec99043b469f498bc2c1eda740332cda520dee70c2aedac22575