Sign inSign up
socat

dhi.io/socat

Socat 1.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

1-alpine3.23-fips, 1.8-alpine3.23-fips, 1.8.1-alpine3.23-fips

Index digest:

sha256:94644352972e5dabcd9ef4ea3e394555b6699a811006f7e3c72972461c0c22d4

Manifest digest:

sha256:4d4a3f88d2ea9e0ad74fddbe1cd54464a27390cc91e6ba6546228141769393e3

Size

4.08 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/socat:1-alpine3.23-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/socat:1-alpine3.23-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/socat@sha256:6319072569cae3d3bb1c47410ce5be3014a5fe8d09005528dfa1fcc600e668e0
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/socat@sha256:c70fc53a6b3b05666f7c17fe2f46ed1fc75035aa142c01bcdb4c8d859fe17c07
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/socat@sha256:f2985b0fa132fc3a834eb4d57f1ddd641124cfd3c645525cdd87427e754bd132
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/socat@sha256:45ece983909fd74add1988b184ea8c8bdf2eeacb10e0fa22c697b80283d81b8d
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/socat@sha256:6d44b6444e2fef42f01c14e7d4658e0a35ba9c61c39ba4921bc4fe7b16d09671
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/socat@sha256:14bccae49efaf952132fcc525ff0b24e36029d0f4ed716fc38680b935cbc5c89
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/socat@sha256:fa28b2e064b362c7c69602eaa7191509527bdb0f1794f33062767bbbaed46991
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/socat@sha256:03a3117582d32860fffcc536b604ec4a0aa5a3ea27e62ec4725a9c92a98a1544
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/socat@sha256:aeeba970caf3c86fe1711ba6b15bdfd854113b0464aaf95db51a13cc9b354f49
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/socat@sha256:1ced5657ce24c7fccba9029d1b8ee9e2ed41c4a39d8bdbc464cba09a396fd9cb
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/socat@sha256:3fcd4af6c224382d67835736bdd823e9527f8e418b373c3a295ba259965af9c3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/socat@sha256:6534beaf7e35fab9662385f4e2e9d24b47e7b42f83dee6cd9119837451552329
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/socat@sha256:0a0ccfe02de6d69420113af92edb55183ba96a0958a226f2198e0ca7185172a1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/socat@sha256:02b10895333eaf8face00bc7b2aa5c9fefcf21aed091e067db7dd640ae7d0009
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/socat@sha256:aa1410bfc5ddfcfd67d78f4644d9d706e2ee9ec81c637a0a362921c7b46b02f0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/socat@sha256:a63be16f7ac609784a5773bd7c450ad91e541194d7d1d17d55812f59a60bc9d0