regctl

dhi.io/regctl

regctl 0.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

0-debian-fips, 0-debian13-fips, 0-fips, 0.11-debian-fips, 0.11-debian13-fips, 0.11-fips, 0.11.5-debian-fips, 0.11.5-debian13-fips, 0.11.5-fips

Index digest:

sha256:53986a7bdbab5f584d5657efc3265eab9bd438cf1c767bc9901f764b3e6104a9

Manifest digest:

sha256:eb7ae47bc82d70db2fe57669a1be1d3c718c7a989b0b842715660ba7c167d556

Size

13.14 MB

Last pushed

14 days ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/regctl:0-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/regctl:0-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/regctl@sha256:c1c73f146c73b1fc93411d27633a93c7082f46d5d953ec8e38706239523ab6eb
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/regctl@sha256:5d6fcd6b38f188dbc5e46a6688b05082372ad295166c6e0aec555762a6934173
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/regctl@sha256:7e415d9a717071a6e7809551c517f434211087178518951610d160b79a224b2f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/regctl@sha256:0f259794c25ccc6c2392d3be3357b1d1041283a64b1ebcf8286d795fa120115c
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/regctl@sha256:3438b7cc949882fc8120cdc7e40882f35493a5a36be0c0c6037751d752c1eaac
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/regctl@sha256:4c100b30a68f757066bec23414fd0634b9a359cfe98b0bf55c7e24165c14c1b0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/regctl@sha256:ab2a8a3456210fae0198ae38aaee5969ebfbf81de7f9ad5b72971e1dabf44974
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/regctl@sha256:6a9647ba3870a127402cc6eadd8c45c5f58f684134beef288a0203923a6b28ac
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/regctl@sha256:d4d6b9d3781b6457dffcbd460786c66dc66e0621dd0073c3f7723d2465ca1094
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/regctl@sha256:b453ec872a8bbb6548fabd585dc1477e05240e6920e02f9053453007a01bf9c9
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/regctl@sha256:2e7e6b82ffd32f1ec5ccf31eecf5b9cd410f604e26626cea01c6fcbbd1c32d40
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/regctl@sha256:889f513aad7448d8a579c755932e71236a814747949c2a970c3da792dc7cde8f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/regctl@sha256:e4cc1713b9c8f80cdf61e68a9fdba14abe0b0e41d9e1b95c27a412f956605f96
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/regctl@sha256:ec9d27579940ab89310fdf0d8cda0d381a0a4e60130793be3e168c94c36fc3a7
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/regctl@sha256:a2ba2c67b0eb69adc437ce41a9da76644fbaf18994f111af6c404bdbc2e25c94
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/regctl@sha256:b0342a0063ab4084f1377155fc13e293b899b526534082d24a7069bf544280d3
SPDX SBOMhttps://spdx.dev/Documentdhi.io/regctl@sha256:fb866a059f9e147c144eb2b2125e7d8ef2845eafe5fba509013c057abe758cc3