Sign inSign up
Virt Export Server

dhi.io/virt-exportserver

Virt Export Server 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.6-debian-fips-dev, 1.6-debian13-fips-dev, 1.6-fips-dev, 1.6.6-debian-fips-dev, 1.6.6-debian13-fips-dev, 1.6.6-fips-dev

Index digest:

sha256:55f75a965015962447d97c847ee8d3a70b1affba32f7bead2b84be73c60137f2

Manifest digest:

sha256:674a720375e6d149a63e7cb0e406aa791d35fd799f30e7b9ec0f1a545bd9e99c

Size

47.83 MB

Last pushed

11 hours ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/virt-exportserver:1.6-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/virt-exportserver:1.6-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/virt-exportserver@sha256:3de500a6da05c48700ed8904083cb136c405d2615816bfe6316628faea52abef
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/virt-exportserver@sha256:596b5537994ada532028453e7dd5799b88eea2aa28bca23998aae72783304a73
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/virt-exportserver@sha256:86bfd51276040da05f87840f95da5f2bdf1582e175a295ef5b5a5a350da81ac1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/virt-exportserver@sha256:a9ee4f15bad43c160297978abe9b66736272d8ffd36a952de378a49ab28e180d
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/virt-exportserver@sha256:5aea552c3de34cb3da7f85e8ee7036753edbe1da08bd2aee5bf504b3cc9424ca
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/virt-exportserver@sha256:1c350529ab43d458acca861021ef7b4597b0623d4faf519a56e737aa3d5d7226
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/virt-exportserver@sha256:528ee5643c7eb29f29e0ef37d2c0ad501a35c6a2d3f8b1712bf69361b3e3465c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/virt-exportserver@sha256:7de5d19bf9d4a24481111944bd102f0cd95619ae77865bb301e0782280c1ad48
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/virt-exportserver@sha256:04f3709f2eea2c53afd02c0b0a1d4fd384d99c0ad5542413fe1bf2bcb42561cb
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/virt-exportserver@sha256:1f3a30f6e380e38e67336e59261588eed661389d320848ca20b6d2c152bc6a4b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/virt-exportserver@sha256:a3ce06d93dac6d9ee86df4b30b164a3f6b9f189c9ff85580218ce77a4dd585fa
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/virt-exportserver@sha256:ca12b20df746a3ea6a24df3f59f9e2cdbcc58150c79a6901ea3af15ad95b41e8
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/virt-exportserver@sha256:2e1c0f300d18e3e047a8edfd246625de5753275e2f5e9db76033a47f31cc379a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/virt-exportserver@sha256:ac4ff4b772871e1b922d89675cfd020807cce325d92771df5da84c67578cb938
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/virt-exportserver@sha256:6768a6a96620af87e362dc87ad115393e4e7a31d6180b21c259f3d0424672e33
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/virt-exportserver@sha256:ace1bd8e377060bdacb149585494cc2b4aa6c41bcc56510de07b09f812d6211e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/virt-exportserver@sha256:b813e18e517190a933789b7c335d387f4be97dfd54678cbbe5ab92cf0ace7414