Sign inSign up
Velero

dhi.io/velero

Velero 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.18-debian-fips-dev, 1.18-debian13-fips-dev, 1.18-fips-dev, 1.18.4-debian-fips-dev, 1.18.4-debian13-fips-dev, 1.18.4-fips-dev

Index digest:

sha256:46c4a89b85b066d1c31bbeaf749d7dc3e009d0a7c7e813a087c7015f7cb12464

Manifest digest:

sha256:853f7d987069f72f50782f5afdda70b04a3ce97a8d52ee0494d08c69e8340bd8

Size

102.63 MB

Last pushed

3 hours ago

Vulnerabilities

0
0
0
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/velero:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/velero:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/velero@sha256:1e11e341a2d05e7ffab7e91048cee8b44e0ca12c76d612378123a3aa0ecc64b5
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/velero@sha256:4bfaddeaecf631da78de06fd7ba78bee3985a2cb3d029b9d4d98649e82720712
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/velero@sha256:0d48a1868ea6c84114cf5b8bc0da7d1f24534f4d6bf500bfcde65864266f6e0e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/velero@sha256:652dac5d37a47ee9e0630beff32af9da04a30a09be07db7177a6d87e581d245a
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/velero@sha256:881aa92e8849c82f32f0da25ca7fcd943e6ed358d663bc9c0ba70d12876ff0db
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/velero@sha256:7483213d01bd1984cc5447c65d4de95b449c0d5270fd4487bd1ccf5714793487
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/velero@sha256:fe2a9a7ad4e9f344506ff56cff8b9824502dd9c9e3dd7f36a9b9011ed6d39962
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/velero@sha256:9c75048c10af1fe7cdf3ca1fdd97ec8f6950959a66c342624a9980ac88b1a22a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/velero@sha256:90cc0e4bec1428a6affdf9d74e1563cff3b0ea2311bf376394fca48a92cd6e36
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/velero@sha256:2ded80701d94c57db4648901bf0857890ddbfa03261b4080149cac3650f23736
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/velero@sha256:70c93a8ab82c414729cf14095bc404f06c34bc0c7b92055378117f16d9be682d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/velero@sha256:e8589549636c48062c935fa7f4992ec5c55c4a4251d5d798f71e9689d02e926f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/velero@sha256:2443fb1e7ad31c6025ee48574dc0faf9361e72e45bd6002e8e927fc4c44302b4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/velero@sha256:c7b194e2394b4841af435d8f1039dfeed9af19442dc62ceb9a02b8c0d5fbce33
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/velero@sha256:a9114391112555e47099c0daad3a58fdb1bdd3055655538a2d77739a7b8fb750
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/velero@sha256:495ebe17193580d481c9457f97f85c379891907298c00719db3a472e532c8868
SPDX SBOMhttps://spdx.dev/Documentdhi.io/velero@sha256:3067fc48590d6bb429df7c3040ec5efb59b832cd98b12d57edd551a175986853