Sign inSign up
Vault CSI Provider

dhi.io/vault-csi-provider

vault-csi-provider 1.7.x (fips)

CIS
FIPS
STIG
linux/arm64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.7-debian-fips, 1.7-debian13-fips, 1.7-fips, 1.7.4-debian-fips, 1.7.4-debian13-fips, 1.7.4-fips

Index digest:

sha256:350e3423b0cfe43cc3f3c9bce167f16748430f1e1951054527f78d9a3d96172d

Manifest digest:

sha256:49b6b85c4901121bd7604964348503b693349b7b3ee3374ad249cb48f5ee0d3f

Size

19.06 MB

Last pushed

21 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/vault-csi-provider:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/vault-csi-provider:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/vault-csi-provider@sha256:9db1b58fe94963a32b7ec84ac0b9a11db1fee40decce665e1ea768a4e4a6a4a9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/vault-csi-provider@sha256:7916efcfd14e5c0a29c249eb09f152d454836ad660728f7b2a94dac4c95eb4f8
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/vault-csi-provider@sha256:4933c7e67cc5a37fe54feb4ceaa99bc7ec22274faa85b94b6f0037608c71ff73
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/vault-csi-provider@sha256:a7931d8975b6e149be8aa05f147bada1ba6ee144c6153ce07a78b5d16db570be
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/vault-csi-provider@sha256:2e5e575c2a0d6ce882b785d010f108bd6248cd5d86f0a17e4dfc78d1c7829fff
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/vault-csi-provider@sha256:90dfb090a9bc7656bf464a979f138c049b7bb601f593f5625139a64317bbf877
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/vault-csi-provider@sha256:bd6fa5a8764dc7bb2a934dbbf336a32fc01f68da23bd2634b9905d551b07b686
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/vault-csi-provider@sha256:e5a59cdccccef94739f61384daff9f3cc78ee48537ff430bbd02dadf2236ab26
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/vault-csi-provider@sha256:19c58613ad4471bbf21167fdea18bd66ea08a3084d0808976e236629fa9e3197
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/vault-csi-provider@sha256:3c20f27e5cf0eda4ff673196e82fe594b1c9a3e38b8e743bb01ad77a06d253f1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/vault-csi-provider@sha256:d42dc28621a7f5c1c81ca65b92311d2352bbae11bdf3d4da1b45b0b46ec90feb
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/vault-csi-provider@sha256:0b7cf84536e66aa905997651ea5445cea199eb96d236aed3a9a14fbe340b164b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/vault-csi-provider@sha256:3c79c76b5570730798357de342f484169ebe1d49d40b21bf5e81ef4185851477
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/vault-csi-provider@sha256:993ad705eb27419b1c848735906b54c9f4ad4cdb8f22987ef52710c166ce95fd
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/vault-csi-provider@sha256:28e7c8113bad4a5d4119cf9bd575b3e3d0fd20d79ce8a743bc1aaab1c3a9ec4c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/vault-csi-provider@sha256:b76a7634cae5274b83964091f31eace06d4601d474321b64fc7d75fffd2ba9b5
SPDX SBOMhttps://spdx.dev/Documentdhi.io/vault-csi-provider@sha256:df0bb709afcdae901ef9d080bd24165d152468caf51b1c83ad15e24bac66244a