dhi.io/rook-ceph
1, 1-debian, 1-debian13, 1.20, 1.20-debian, 1.20-debian13, 1.20.6, 1.20.6-debian, 1.20.6-debian13
sha256:1961c75d28380538b549b19afda6fee1a1ad382ed7dd7850dc90a3599a029d2c
Manifest digest:sha256:eab5c5c144271cc605845fad67551cd21a2adbdb48f499afc030e9299a7759d2
Size
260.39 MB
Last pushed
2 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/rook-ceph:12. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/rook-ceph:1 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/rook-ceph@sha256:2f59e156b79a8555f2d63a645091aba9bc45d318e3e45db89c9a7528bec7d6bb |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/rook-ceph@sha256:61d52aff606c5ead37563b2b67121b22a10a68a507399f31e36f494fb5c66031 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/rook-ceph@sha256:e383ac3f75f181ea9168f5c95f3f8591e35eb408b9e6fe6a892e386fa771548a |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/rook-ceph@sha256:50810bd7913b5bddfabb93cdb161a7fb81c61971c3aacddf69051ae1fb5e7303 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/rook-ceph@sha256:0b52c88db05944c24d9987d3342c332ceb8e1b6d1e4fb31889e27aadbee3e21f |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/rook-ceph@sha256:826feaa55c3383cac40bdbbb63921a557adc27b649881041cea83b516a981e07 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/rook-ceph@sha256:0cd15e24862cf45a796acd2a955cac62ecd6cd07513492e738fe18ad05ca7d0e |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/rook-ceph@sha256:c3539d132c15bf07e7728b3f13198995de4efcba25dc5c3c9a8877ff8d707099 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/rook-ceph@sha256:43c92a2b9def36b19d2e87a24dc5e22e8fe0f662b60a73f52a4da501f300575c |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/rook-ceph@sha256:afb379ad62aba76a5dfa940d60f4ab6d13566f2a54053263e837eeaac82f8148 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/rook-ceph@sha256:de6670b4604fd376fe55f5a8c736e064282a78ac905f7da92d4a437d891769b5 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/rook-ceph@sha256:269a99cf37886f28d3309876b8f76544310dff83598cfd2380544ad36162728d |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/rook-ceph@sha256:b1f85119761005cbc99904473d0e1d3900095cb2a797be64a734dcfe9cf0d154 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/rook-ceph@sha256:7b14560562d1eb3a985c8bf182c835be73f971c87e08999f08a1a3fa970851f7 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/rook-ceph@sha256:2829c36376bb78556d4b5674e43aae180158462b49a02cd74fa1e3606b87b04e |