Sign inSign up
Rook Ceph

dhi.io/rook-ceph

Rook Ceph 1.19.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.19-debian-fips-dev, 1.19-debian13-fips-dev, 1.19-fips-dev, 1.19.11-debian-fips-dev, 1.19.11-debian13-fips-dev, 1.19.11-fips-dev

Index digest:

sha256:ad15ca20f70ab5e25e2e54a104a26cb3f08dd6fabc9dc544232e5c6610baa823

Manifest digest:

sha256:6cf3595ed2295a8d06acf151b22f8c061797f3178c74c5718e1b61d0b4746625

Size

300.52 MB

Last pushed

14 hours ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rook-ceph:1.19-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rook-ceph:1.19-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rook-ceph@sha256:7d28160d838772f1237f5368f44ebe0386c2c7fd7bc805d8d6240a2a2cc3dda9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rook-ceph@sha256:a0c6bc59226ffb3439a280054d0095e465aac305c62c13eafeb86463395e2c14
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/rook-ceph@sha256:6024cc41ea345f540992e4b68482e0a758f7b9a5aacbcb5408387fa13833a51b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rook-ceph@sha256:c0d6e5ed8cb9b1e2e1c3180054c9efaba94a9464c5d22c35aea344c9742e469f
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/rook-ceph@sha256:9b5094a6016f7b64cfb1eef1e5a2d1634fe9074ba091f41e49054591929a8578
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rook-ceph@sha256:935669f0659c4d3061a8e8ba23df796ff1b7c653a17fee1567a34d9011a53ab0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rook-ceph@sha256:cd2fcc6cd766e39ed39be8529b46652a900f99957ce83ff81b751422889a6d24
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rook-ceph@sha256:6d7275442a626b315496e8094bc4f1c94323c2e0c9c47cecc33a2e0b6b28d676
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rook-ceph@sha256:ba88b8639851cb3c5361872466e54fb0ed63760f3fc803d5f8d5869978fddf49
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rook-ceph@sha256:b5db4ffc3b300dfef570091fd341e4390ef0076f7794ebea73b83f65efc14593
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rook-ceph@sha256:9829337f8eb7ebac3e11965088f2e73dde1ea28da23b6917e9493098c2a73acd
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rook-ceph@sha256:54d270aee2b583a99ba1fbae5683d1608b7a105e66b438fc30e4fde13a5d941b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rook-ceph@sha256:201987deb91c6b09266260fe9c7eeba7fa49c271ef8fdb48b7535028e661a6bf
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rook-ceph@sha256:8bcf53a9e0d4f4fe5b070acefc4bb6b22644eedde9e89785d6ab3129d806be98
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rook-ceph@sha256:1929c2714414f10705e3e9d1d75a4e2f41c98b4aadc6e5da1684f624a6ff7688
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rook-ceph@sha256:149438b70b500f908c5bc3e4e3d569d31a72dd511b3d1986ac7ce34b571e5270
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rook-ceph@sha256:3e5c171de5ef14da28c962bf2c68174c3fef563a0f07e10338efa25b86839ab5