dhi.io/virt-handler
1.7-debian-fips-dev, 1.7-debian13-fips-dev, 1.7-fips-dev, 1.7.4-debian-fips-dev, 1.7.4-debian13-fips-dev, 1.7.4-fips-dev
sha256:e335d3d97c01a155ae7464876015e690f6b43cf02ad11ef2e290e06f3fee15bf
Manifest digest:sha256:5baa9e7bf8884ba88b11d04fa7895b5c5613a9dbb12780fa1f1cca2d2f87adb4
Size
72.31 MB
Last pushed
4 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/virt-handler:1.7-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/virt-handler:1.7-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/virt-handler@sha256:d6f5f7994cc0e94e2b12f8dfbe1d7373ed0ab283c8c9da60a4690b9398fab366 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/virt-handler@sha256:2dfc9dcd21fa5f2b3bae54011fdf7a00e8d6f68ca848e5273e502c9bff242d38 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/virt-handler@sha256:a184b021120a966d67d34db98b884cb3cab7d317aeddab4def1ce1e9a18afd1d |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/virt-handler@sha256:0cb13a551c3b42042e0fec3d0fceb57aaae2f8ed876263ea25f1adf5771d8677 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/virt-handler@sha256:e2159e0d1cc3737a7ecf8aa7b7c6c38e1c26b5282f755fdd79570253139901f4 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/virt-handler@sha256:a655da0c245634b95f84a63c640472db0da62cb0913cf16c24718d134c070c36 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/virt-handler@sha256:cb16abf699a5b1b9b66c8164a3290a6ccd08b5ace7ac2db0e1e930eb106415a9 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/virt-handler@sha256:4b11f79b1b6a873bafc9be0ad0bb79627379d883e752e928ac35bb1fa4bd29cc |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/virt-handler@sha256:26715277ba9f37d763a60512049507aa2bef2d42d29b1f0d7af847bf66aaae5d |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/virt-handler@sha256:ac87f28d0d2727fece5b13043e207ff56b932301af731ff9d791089709916f9f |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/virt-handler@sha256:659723b50aaac03d934e1829f74a4030665dec5637bd8a3d4514105df3975daf |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/virt-handler@sha256:f0bc96741407a3a9ea5d71fb5d03782989f9ae3d59d2d5534901875cf05ae8fd |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/virt-handler@sha256:97f08d4f14042038bfe6f743ac38ad91739e04b9afbb9009dd5906070f2cd651 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/virt-handler@sha256:2da74b8020fc118821cd366012ce5d6ceacd00b882891b79861512b0f5f4e1f7 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/virt-handler@sha256:0fbf392a4c40a881e48761a7546168b72b33b9d77164df1dc4ee60d0a14f23a4 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/virt-handler@sha256:a487e50734585a031d380c132630df25b2a6abbcb73d838a79337cc20c00a31a |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/virt-handler@sha256:0aebad170fa2c51398449684f11be7a11ba26c182cb1fe55d9af22138b758800 |