Sign inSign up
socat

dhi.io/socat

Socat 1.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

1-alpine3.23-fips, 1.8-alpine3.23-fips, 1.8.1-alpine3.23-fips

Index digest:

sha256:cc7263366aa71eb969320e6309ea2a91864cb56dab04b79a85fe4d5fc266c5b7

Manifest digest:

sha256:0e0f2d3ca95d2d655ce96a0bbe88ae3a6a3dcf1d3dfa189a130fc956fcefaabd

Size

4.08 MB

Last pushed

20 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/socat:1-alpine3.23-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/socat:1-alpine3.23-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/socat@sha256:43a13fa1bf8b65bbcc07f3d85601a76b458afecc9c37bd206d1b50394c9db774
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/socat@sha256:1d04d3ccebf50c1362b0dea392798d72d82daebc513056199e902fd199c761f9
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/socat@sha256:74ba6b2e361354d092494fd24f7c17c166e02ff00e7e2f2c768dd1ae3de379eb
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/socat@sha256:ba950def817e44fc626cc33e53749eff148e9399f392c562fe8cdc9163e16faa
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/socat@sha256:6127d5e38272fff2c18c3a704c13d5215a435c0bdb296ca1f95bd46ab661b79d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/socat@sha256:64c496da068bac12978a05283cb8c8af3ccdfb43ac51b641b28bc49913cf2f40
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/socat@sha256:b0e17e7e1b74568a188c5e223fade3332708d1d9785ac7eca8f0a86e1409ef80
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/socat@sha256:6d788699dd3ae0ebfc29d74e8f68b76dc0e3f5d995f969203471db74be8aad3d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/socat@sha256:10bd4f48256fa4c550c79392e66c8adcfee2af0f0bb41d84c7a0a53e5ee07189
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/socat@sha256:aea13bacf8c93577882134b4a46a00d9bd0f0f7724f303818a80d399a9b4854f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/socat@sha256:c4ffbfc2fd606caf6b9d97cfa32c019c736ee8330e3ee1fea7f6bea12333f76f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/socat@sha256:0cd7a5a2496e3475efd468b7e9b4544777d744a09ad7f356f2841f158e224d80
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/socat@sha256:4f698a695b3981af216e9517797d1b640508036e3cf3e91a3cba2d09999d9cd7
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/socat@sha256:3ce08454d919960d9297bedce0343f3d33464f7ef48fe762740234eafb568d96
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/socat@sha256:3b1c94483f95095bcf58a764300e58313eae844fe71e928acdb971562b0a6176
SPDX SBOMhttps://spdx.dev/Documentdhi.io/socat@sha256:d6d656cac9cee1712a82efce75aaa97ea7407aab0a618356728ac89cc7418ef7