Sign inSign up
wait-for-it

dhi.io/wait-for-it

wait-for-it (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

0-debian-fips, 0-debian13-fips, 0-fips, 0.20200822-debian-fips, 0.20200822-debian13-fips, 0.20200822-fips

Index digest:

sha256:3c9cf7b5d97962d7ac97c3dd75df5a42ee6fb781911e3d1ea7c3fc2faeacb180

Manifest digest:

sha256:61ef3b72f6d77a96e53f509871b1660efce1da18ae66d10295735325d8d55ede

Size

14.17 MB

Last pushed

4 days ago

Vulnerabilities

0
3
0
9
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/wait-for-it:0-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/wait-for-it:0-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/wait-for-it@sha256:b27e238b4f8769331e470cc42c12fb96cf0fb882e4b2fab61957f4c0055d532e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/wait-for-it@sha256:226f49d231bb91adcf0f1d98f61f0b9dd084960535264003fc7f358c1f1d55c1
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/wait-for-it@sha256:3f668f72fed79c7de3acbc09ad84c7383ba7a1d5ebfe40771ee1dafb6035c926
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/wait-for-it@sha256:a24be9cd38ae0b563a0aefd34649964603be69d902a12592ef2b43d34a7a21bd
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/wait-for-it@sha256:858d1fcc8a8c69eb34364693a080fd90965f65cb1b2709468985f8d1e0446cbd
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/wait-for-it@sha256:842a1833fc47207e526f15f3835c66f1cdd357b9f19fe5de2117fe1c6c8a0232
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/wait-for-it@sha256:88157feebf7c3602b404df2e34799c2e6b8a4b928f921a20cc2259f1a42a377c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/wait-for-it@sha256:2ecf31bd191c5d7cd10e86d7a6fda11f6efd504afce464ff7995666feb6b8b3b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/wait-for-it@sha256:c5f2a8442a0ed4ab31d45043ec579cedf3c40d513862fd916cc63f3e31608cb4
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/wait-for-it@sha256:d62e7a541718f03330cab1b6a6ea8d489a32c7c15c8bd33ed351371c9bb9124c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/wait-for-it@sha256:1cb5ee0d4b252a2715c7f0cc9bc3484e846024b1420890c405f9865f72b76334
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/wait-for-it@sha256:78633ffb1d325aad71b05f95ff8a498e51454ad9ec86fc4f95e88c69ddce07f7
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/wait-for-it@sha256:3b0090b962e7124dae6308fb67acd6a10380238b8e6a6195da2726d713fb9ab4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/wait-for-it@sha256:c0174b2a30546dda78579548082384b9ccdb5ec95088f0d9b722cc46f5517f35
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/wait-for-it@sha256:018b737c837c4ca99dcf109c247347de40b52ca0c5286952a6481f3def1c9950
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/wait-for-it@sha256:54d150ffc8b16a10af28ea9ae3ceaad1498adb35af00bcf9b93d89f68493ea75
SPDX SBOMhttps://spdx.dev/Documentdhi.io/wait-for-it@sha256:5cc1780c103322a5727d3e6f2b788dee93637b32a9483be3ebe597a8071733d8