Sign inSign up
Rook Ceph

dhi.io/rook-ceph

Rook Ceph 1.20.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.20-debian-dev, 1.20-debian13-dev, 1.20-dev, 1.20.8-debian-dev, 1.20.8-debian13-dev, 1.20.8-dev

Index digest:

sha256:a37309f6905c1116d5a33fd6a12ddff16e03e692aaa592a7c3542f2c498ccaf3

Manifest digest:

sha256:dd84c741bab5550c34f6cb51f1df59965e46b2d9df3a8969adfe7076741895ef

Size

370.67 MB

Last pushed

9 hours ago

Vulnerabilities

0
0
0
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rook-ceph:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rook-ceph:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rook-ceph@sha256:d16f962459ed95ff6f793116f6d7fbdd16520d5e9a75680e6e6f7b1ca43e63ca
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rook-ceph@sha256:0003761cb9b3d99ca7a9214c544baf6fb25a5daf870cbc6d4fce230b7dc8540e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rook-ceph@sha256:c1ba90031b620fbbd490a0ff211cf050169447b2f9dffae0656c06151b3107bd
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rook-ceph@sha256:e8cee1093d931261a8f4cc03d73628055ca5e5e19a01f22e2f45752045a024ef
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rook-ceph@sha256:6d792a391d647c8ce71eb861100629d2d83300c792d856b3a7a333ba6a5632df
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rook-ceph@sha256:f01e0c3c64d922562b348604eed746810b4093f2202956fcffb7717c96654917
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rook-ceph@sha256:71bcb9dacceb346e16b79d3197ef30dba21e3420c858fe873c75f97bcabe0745
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rook-ceph@sha256:ef433d99ee95f6ca94bb47dc689822bd40f5a1926cfaa124020472e0c397a67d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rook-ceph@sha256:7b3094e1958e011ce6eb3df059619f7e545692eab145a82b2b21b37ee0070281
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rook-ceph@sha256:bc86cf8e78cd42450dedb545701fe8c407d2195d4f1ca22a5f9d93da30ede049
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rook-ceph@sha256:2fed992b885e2dec5d08f2ce5cbe05c05b425454af1739a6436d2e657e1a753a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rook-ceph@sha256:c3f055da307018043296da381f0ee2780b009ed522205fe5a4b8a095459784c6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rook-ceph@sha256:92f57b76a510ce295eda1ec89b4beaea4d0b2daeacb52ece357cd503ef29d0b1
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rook-ceph@sha256:db15f7b526b9ffbc9ca4da45d0a24fc1dfe8b73ef28567d67ac0bbc6ff906ba2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rook-ceph@sha256:ed900448f71d702d5194b315ee35a454e095a0e1ef8524ad77d5512f62376edb