RabbitMQ

dhi.io/rabbitmq

RabbitMQ 4.3.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

4-debian-fips, 4-debian13-fips, 4-fips, 4.3-debian-fips, 4.3-debian13-fips, 4.3-fips, 4.3.4-debian-fips, 4.3.4-debian13-fips, 4.3.4-fips

Index digest:

sha256:84dc47c352d8383e37f85612562de3d2bb08e8448b0c8fcafc5fb0250aef0293

Manifest digest:

sha256:79a94d4f03248b620b6d80b9a5e6c4a8cfaa1b690adca4f3c254aa01cd6f8162

Size

91.49 MB

Last pushed

7 days ago

Vulnerabilities

0
0
1
3
0

Support

Ends Jul 2026

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rabbitmq:4-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rabbitmq:4-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rabbitmq@sha256:a4191327c46ce97fffae97ecaa674a8952c2f052d01522d5e6a794bf40acff19
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rabbitmq@sha256:477e0fc2e8175db1fba61978264cdeef217e520ac6df85e80353babbdb9a325b
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/rabbitmq@sha256:ab1b525b350c66be526534a2ab3b92c62f99eb3c2264b5737b878f9d150e8486
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rabbitmq@sha256:965124df5c897a386beda7f53a4b361f17a301041ad21f46d7749f3f52f18d95
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/rabbitmq@sha256:03b16d3d456cf22975cbaec189f3355ae3e82468147ccbddd2474ea98cc303e8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rabbitmq@sha256:4bf00e1cda2acebbfa7aba1389cee61e6010283996acaac8b7b5d60b0493c3c5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rabbitmq@sha256:f1fc014e7a42fd68078c41bb103d22ca6a8c888ffdba7972e6c2c9888b06443f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rabbitmq@sha256:417cd0f2902ea51a727f8c27d6a1c0ab5f298a67d7f609695dc0e1b331ad2dbc
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rabbitmq@sha256:9be6e6fa14ac26f53df3291dae5e23ae82746dffa29ef4cd7aeff2d7c0c7f8be
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rabbitmq@sha256:932b6b302d68b8dd992a5dd8e7b39016a8989148f3ea7cd58fd71dff66cde453
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rabbitmq@sha256:624a8701e7c175526cf9047bc0b8a8c94d11d99af11051fdf19d66422bd90ce0
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rabbitmq@sha256:0dec209aa9f3e9bb6a824a52156199c2389d7525c793d3dd58affff96e2e6ad8
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rabbitmq@sha256:f6fcd31dbf6e39a04eb21b5b962ac2b36e31f227df222bf24781b786c8bf1d82
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rabbitmq@sha256:1044b0d4580751df7f3c4485f28dfa152261aa7585acea58b3abdfda719e369f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rabbitmq@sha256:7e7099b586cf86db97539a7a03aac845f40dd250e0afc29090b6a512844e8e1b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rabbitmq@sha256:5565b5ee6164749b5e14d17d938ca5fb233ae469757b14743ce4a7a258ee8ed0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rabbitmq@sha256:d2fb40480bcf9bfa3bb2f7e9b61ec288ab6a9a46e1c765509d43c65af44a0230