dhi.io/virt-handler
1.6-debian-fips-dev, 1.6-debian13-fips-dev, 1.6-fips-dev, 1.6.6-debian-fips-dev, 1.6.6-debian13-fips-dev, 1.6.6-fips-dev
sha256:592e5315aef678bd984509ea90cb72fbf60f9a1acf0e3cea8acfd84faac44158
Manifest digest:sha256:e0cb1e22921476841663f10c8097d1415fc654976154c42babfd2110d75321eb
Size
71.59 MB
Last pushed
4 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/virt-handler:1.6-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/virt-handler:1.6-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/virt-handler@sha256:acf7006c09053f4ff5123096f281c633af576844cc36f3d723a6d2c5472e6f3f |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/virt-handler@sha256:19a8e5db2ef2ab28acb67c82db0c5264abba95820870494bab9b4013147dc90c |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/virt-handler@sha256:87d6c99c5e93bcd3485e129197956869693e29a6770e0e2a0269ff880cc45f66 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/virt-handler@sha256:c35f1e85233640a5d78d25ad96e1607b9bc4305823a2cfc20f4ff2c67513e5b5 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/virt-handler@sha256:00bc68906dfe5210d39911658768fd4271ada16aef9b6c48ee0edcf4b8f47820 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/virt-handler@sha256:fb7c6e8cd14a3ecefd99753a9bb65670da60c0b209a04566f067b7defb70e255 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/virt-handler@sha256:52ff19a15da4a224eaaf77a69619ffc951fb8505868bb0803bcb4fc723ba64ac |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/virt-handler@sha256:7497da213210c013116ab6b9a1bc567ff76a1709595e89ed4aa3996b7cc5f343 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/virt-handler@sha256:256b850bc719c2792ddd628174ce7608aacc48dfd83bd28026e409225b7ca2be |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/virt-handler@sha256:0dfd61f0e7e16095138c88f94dd09216f514ad5d54c598191b53c9ac7c253aca |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/virt-handler@sha256:d1c4a2d787ed3546b59de85bb20665ed365f02b934f0d1a30d6af7aa6a1a0d70 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/virt-handler@sha256:e265d0cd4843efde0b36369ae0fbb8aeb9e885b50d9ada6cc26eec619b66fe07 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/virt-handler@sha256:55fe5316bbba06e81123efe43d39a2efd665673039dea8b0b7444a78148739d7 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/virt-handler@sha256:d4e17d3ce082e0763b9baebfb80d753de88ecb0ed489269448afb3838ba35d64 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/virt-handler@sha256:79dc6965d3c88fb0609d1b576a9c7ff4678d1e634fd8919906256363eab873ba |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/virt-handler@sha256:0f203fc75f743e55eb95323c4abf792f1e2ccc482c21183a3350dea902db3cf8 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/virt-handler@sha256:8b21ed950e80eccb21675fb1c47a6545b2ef114c4cfcbe532658facdf0e619b7 |