Rook Ceph

dhi.io/rook-ceph

Rook Ceph 1.20.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.20-debian-dev, 1.20-debian13-dev, 1.20-dev, 1.20.3-debian-dev, 1.20.3-debian13-dev, 1.20.3-dev

Index digest:

sha256:91c93763aea0b86ab15cb64c410e4edcedcfc1835dec63e35c3be7ec967cbba8

Manifest digest:

sha256:3d77df521e374ba199ab4eefec7466739f631bf5a61f0246e84f605585bef52d

Size

295.76 MB

Last pushed

18 hours ago

Vulnerabilities

0
0
2
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rook-ceph:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rook-ceph:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rook-ceph@sha256:2d7f3fb9ee044319454169ec722f5b9f3f62aecf54df145f5b188f061fd0a7d2
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rook-ceph@sha256:a9063c9169e15daf4344b400e9ebc84286f337d22806c0e1f4b6e544eab1cd37
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rook-ceph@sha256:873dbcf68af195e5104d8f01b2cb7b4dc93963acacb2f7543feb1dfcba221cac
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rook-ceph@sha256:542a04d1596d18bee40ff337749aba757340d6798677b840e0ab74a0ac27ebe9
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rook-ceph@sha256:5ce3c1cda828d31f800e21ba38fe585656819bc535cbac62f3d6bcae01c3d809
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rook-ceph@sha256:5790a64831bbbd37a9bff07fe3f9c4b77a81080a82f96cb62c0ee6803c871b92
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rook-ceph@sha256:4f1ac654d2685275aae4e41045e5824fb8add80cadfb06a104899f45a2a75997
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rook-ceph@sha256:8b98f3878b9cd4b6a5ebe734bb837694b028ba5ad8925ffc8bd015010641b39e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rook-ceph@sha256:94e114b63b7b3605245a991621d2c586f8d8c53db754a22855b586fa2898a66c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rook-ceph@sha256:aa28b58c55b503d7ccccb70354301110991b34b78eb21ff4b14a13953d1f3af0
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rook-ceph@sha256:5353caf6b3ccfc33f005800d83c2dff909dcf12724fc53c1ddb6572604b267ca
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rook-ceph@sha256:1010b39116a69d2431c7016e496fcaa3fe303c58aedcca020810cc0d8457de73
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rook-ceph@sha256:48dcd65821c4c39ff3fa1520b949af250a8f1b96290ea98bb7c441b6c781031d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rook-ceph@sha256:3eb46ec98a43c3a0943ed53ebd265b9bf28b16e44c34de9db2bd1fd16e39dc47
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rook-ceph@sha256:f18184580ba468b6faef2ad065d946fbd29a280995298e2d6d25b438d12f8d4c