Sign inSign up
Snapshot Controller

dhi.io/snapshot-controller

Snapshot Controller 8.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

8.3-debian-fips-dev, 8.3-debian13-fips-dev, 8.3-fips-dev, 8.3.0-debian-fips-dev, 8.3.0-debian13-fips-dev, 8.3.0-fips-dev

Index digest:

sha256:c5c26005ec546868af523e95174cafaaf066066bad5d19479455f338ccce815e

Manifest digest:

sha256:cff67bae0666d05c5365d02186453417d968d9444a5fec3667c71c70c772aae4

Size

49.99 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/snapshot-controller:8.3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/snapshot-controller:8.3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/snapshot-controller@sha256:4810c41d600b3136da093855917bebadb92b3c2807b07848ddf77322ac28cb2e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/snapshot-controller@sha256:640d669349a876294a40a4b0fc76d8d2f646866dfb671479213e80a94b279147
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/snapshot-controller@sha256:195473e167d3581b0599bb889d261cd471f0cd1f8a663e3fd5c0657afcbd671c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/snapshot-controller@sha256:294424bad1a87e26cefb61aa881a3ecdffd9ecae8cda4235bb2e57326abeaaf3
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/snapshot-controller@sha256:36cc837b8221ade3b4010e5917eb2aa2ff9f3c0951a93fd5dd08db99fd8b2f08
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/snapshot-controller@sha256:76938ec86a8f56ac530ad7b1c902d35019edf5d1ad36ccfd66a25596af7984f0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/snapshot-controller@sha256:edbd9a346aec9ca46390451599c2c7b8035a2650795c7ce4ecb8ffec9a889af9
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/snapshot-controller@sha256:8c5fd86643a32bebfa32aededbecd5d21bec98f9b886b4337ce453ca2f91a36d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/snapshot-controller@sha256:9b59666eb397f184ea1954af14e105e65e2141d0009c77285a99254179c52869
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/snapshot-controller@sha256:86962d6447a2b17559052e294f83fb308946354e0f281f7f37953a30891f108d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/snapshot-controller@sha256:130f8991a86534f3112db6d4b9d7131852dbf094d5e50e907bed11e8e6496ecd
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/snapshot-controller@sha256:ece650c8ffc284550ccba5fb51d5597790e31c7fdf76e4662c7b8c29ccd2006d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/snapshot-controller@sha256:a6e1a11bfdc78dfcee607a89b0ee400f14f4cc5a564567ed4402dda51f2c564e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/snapshot-controller@sha256:5aff9c6955106e1f7d78e37ae30f47f123db20fe565f341c8ba4b2d864a9c64e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/snapshot-controller@sha256:e71c10128f59657bd9cdd26f4730bfe989ac80eb99eac1d5809b4cc10217c179
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/snapshot-controller@sha256:322d7aa292f868ce980f99e49b8520c4aef746063842ebe5804f21f6e1529ed8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/snapshot-controller@sha256:ca60ebd07685ad2e8458e7d0782780fe8607a87b5dbc8e35ee9cde5bab0d2ecb