Sign inSign up
Virt Export Server

dhi.io/virt-exportserver

Virt Export Server 1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.7-debian-fips, 1.7-debian13-fips, 1.7-fips, 1.7.4-debian-fips, 1.7.4-debian13-fips, 1.7.4-fips

Index digest:

sha256:c3009746b89ecb1eb2dba57d6d2a677e72e607d78610893d1906ad9c5e7b9011

Manifest digest:

sha256:7ade04888c417d8e03fba0f492c45b52e823df4c4d8cd2cdc43a4dfd48796ef0

Size

22.20 MB

Last pushed

12 hours ago

Vulnerabilities

0
1
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/virt-exportserver:1.7-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/virt-exportserver:1.7-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/virt-exportserver@sha256:a6f1ebe7ba79f68f8c4afbc6eed488fb713f3a905bf00e67319bb6e77d725074
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/virt-exportserver@sha256:743802d6d7632422ca03f8efba8223ff21a2a318e2df5aaf7d1f83e3b88166c3
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/virt-exportserver@sha256:02c19709bc1be4aaeae79be56f5abdab3741dcaa855558e99f809fb88af8f34f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/virt-exportserver@sha256:20370a9cf2f5eb394946f7f878d932de444666675bdeaeda3eec817b6fdf0597
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/virt-exportserver@sha256:dd64b86d2db74552785b5a353fa17bc73f57203088bf320574202d6cc5137b8b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/virt-exportserver@sha256:38561cfedfceb33ba0efccd599a9129e3022e5ad6a7f0076a73be6eb32907722
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/virt-exportserver@sha256:eb9320271e35395f1c5bc1b6413cf52cba56fae7df64d6e4b1dec1e4c69452bc
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/virt-exportserver@sha256:d0d3ad4a81d39a01233490b591f4bae34e99fe0b46115df123f5ec373c5bf334
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/virt-exportserver@sha256:9f0dbc466d79898b7f36a7d16878062240e8919122ea30ee6094acb880f66976
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/virt-exportserver@sha256:8d3ea439366891e7078c0ecf0bfc628df5e326f1cf1fedee509074fe5bb1b943
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/virt-exportserver@sha256:ea9e3de023524feff2d4212be78a4a2ca24571e51c7e772f8bd706526a34bada
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/virt-exportserver@sha256:b9fe9b05ed1e0994fe96382a564334220d1c92b369d31883a38a58307e45344a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/virt-exportserver@sha256:8ec27e24bcb9392a7de1b2c8f9b64d443c74049f1483b34404c7f95c74ca9d58
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/virt-exportserver@sha256:a512233a802c000559aa86b4d38d4c6997ab03bb6c0b9a93b5fbfe69d2e08141
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/virt-exportserver@sha256:fa0ed9079d0eb6313a4648b2242b5fa4f6d9a925eaa86b8b89631c8932f653ca
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/virt-exportserver@sha256:6d40ed3560d24c44529a40f6cf2325b27c98e64f820b3a0cdcdfdefff330a294
SPDX SBOMhttps://spdx.dev/Documentdhi.io/virt-exportserver@sha256:fdfd538ca633e8a969d2eb5b327756843ac5921bff6f45fa5080a49831e4b8c3