dhi.io/virt-controller
1.8-debian-fips, 1.8-debian13-fips, 1.8-fips, 1.8.4-debian-fips, 1.8.4-debian13-fips, 1.8.4-fips
sha256:0a4b0564afe92bdf3d76f430299361b56706e25bc0711e363a248a082c0ad56f
Manifest digest:sha256:42ac8564737a4049d982a1faa7fb92a656491644932720ed4adf7c7e6e4712e0
Size
25.11 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/virt-controller:1.8-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/virt-controller:1.8-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/virt-controller@sha256:316810a98efd0d17cd7e675de93850a884f9a652555496143a007066f9ed6885 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/virt-controller@sha256:67d03fa87799a4ca60a64533912eaa3d6cef49474a005d6d52cdf7a79ffad45b |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/virt-controller@sha256:3854b70a4b679d50ba5e5253696422dc71a7222529b1739ad1e1233563e25e9e |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/virt-controller@sha256:25373106194a9fd5043491225d6d367dfed816af65634003fc68b00e71e02a69 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/virt-controller@sha256:cfa18f5629ac4545d63ccc5f380ec9de7b35280e38e95c0fee090f2c941947ff |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/virt-controller@sha256:cb4326208a4e23ade1b8efeadb5bd1c9c289a0e2a7bc934f4488540180083066 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/virt-controller@sha256:b79153eb729076fe31d3854fbb3ffc362300056d0e5f3be381bc2d082c6b0832 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/virt-controller@sha256:c9757cf3c279e37a2514c4ff1b050d0f59007439fb3b7523aa2993e97295a371 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/virt-controller@sha256:8fccc605cb0a0b34c5f639a924a71ff0a58ec59c672b0f43add59c302d24047c |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/virt-controller@sha256:b22c078190a2df271d5e327a15ebae617b02a86086816c04c6f2f48043ef8f7e |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/virt-controller@sha256:76105419f4668e06d9b29344362f058aad09a3120094baf845a694f49e2e0088 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/virt-controller@sha256:25a81c78c954f0b130e2f770fabfd7a7e9b6037730adf3fd9ad65ad250a19828 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/virt-controller@sha256:d89ef760241a2696befcdde61b2449bfd090f085fb8fedd9314e05b968799293 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/virt-controller@sha256:63b5f21633a00222611916a5989e441dfe0f1cb4393c42fd2e0c6320a6906bfa |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/virt-controller@sha256:5a4edc471c1ed44a49fdbf577c8e7c2af63e4da2c125d3472b771f14116ce182 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/virt-controller@sha256:cfc439e0564bbf08ee62f0963472df514950be04db7d38b1cca87423787eda34 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/virt-controller@sha256:9454ed16ddfc5f1c8a046015e77f7f557b12877aeed9f18835ada1ec94ef7b80 |