dhi.io/virt-controller
1.6-debian-fips-dev, 1.6-debian13-fips-dev, 1.6-fips-dev, 1.6.6-debian-fips-dev, 1.6.6-debian13-fips-dev, 1.6.6-fips-dev
sha256:23220040012c27886d76fe185913c4594b764ed86dd916d1d293486b9986660f
Manifest digest:sha256:aeebe4db0d9aa30ea1713462250ee5b09d7efb88ecf38b03c2bfec6a792109c2
Size
55.67 MB
Last pushed
3 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/virt-controller:1.6-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/virt-controller:1.6-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/virt-controller@sha256:97fd23629eca1139481e7fc1175de74a0499d7477a5ca34acf18197bd9b62b12 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/virt-controller@sha256:2de0ea93d06aaa654e4ad178f299cf985a95ebccc088f901935a9bea0be59787 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/virt-controller@sha256:cda1df4ddf25c8a41ddbaad065bdfbf37e79d87cbd0a7e0656eeb948bc6ffd52 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/virt-controller@sha256:ff99bfab1cd06e67e1ce0194209e8aadebe85e43876871550a5b901657292593 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/virt-controller@sha256:55c19b15faeaffd25afaa51482db302fa4eca8ac70503d7f9f526378012a8265 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/virt-controller@sha256:675c9f0be31e448d4f4c7cba39e1f5ad540a02d7295bf5dc482eaf24721b5d03 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/virt-controller@sha256:e063c2b78d9ad82c7a57ab84dfbfab42cbe0b14b5e156bb6f5333190c57c04ee |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/virt-controller@sha256:6624decf9cad1646c171b4ccfc40b69af55ced51c6671a82d5ec901012040b4f |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/virt-controller@sha256:b2770e432900f59e1e61a5f82dbdffe2e82ee557d9aa39534ca2d6f8b5a05e15 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/virt-controller@sha256:a5d8c7c8061fb1b0ec20ba27a05057c90427245831192690cc52becec5d61611 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/virt-controller@sha256:049e6df8ba6058f1f6b0ac84ad8659e78136587fec9bd51f56859f6e61dde626 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/virt-controller@sha256:d144e5f6bbd056d38b504ff301b959af62a2a0d65ba63b45c7c6309303a0aef0 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/virt-controller@sha256:fbeec8184264147e686da983e895da789999cfc40a17c6698ea73c96303757a5 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/virt-controller@sha256:7138aac52fd9e864c702ca300bebcd5f5cf6fb54032588e952b940a3b1092f86 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/virt-controller@sha256:e2af79216530ef33333c551b8ff56090d11a205deb477dcf6f193f19adb312fc |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/virt-controller@sha256:85edd5458fd96ead06d1adbfe8b73fc1175822ccc5cff38538327719ffd875d9 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/virt-controller@sha256:9bf76cea067d173145ef85d777d178de7371c6e2afe6fd97452c027ea0eb7756 |