Rook Ceph

dhi.io/rook-ceph

Rook Ceph 1.20.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.20, 1.20-debian, 1.20-debian13, 1.20.3, 1.20.3-debian, 1.20.3-debian13

Index digest:

sha256:b4820e9cd2361e7ed9a5fbbeddcca6ec34414c634a036c4a7d2eed794d06dac5

Manifest digest:

sha256:e1aafef118eebc5358ffae29ab578b109ca73ecc5581e3ce8e4190e721f0298f

Size

260.28 MB

Last pushed

16 hours ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rook-ceph:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rook-ceph:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rook-ceph@sha256:31acf3b4cebfd2c1a6e5c3144919826843d88b9f630db3572d36f03317b767c3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rook-ceph@sha256:4f82525d5376e926cba58a28ead7dd0035434fe609f5fd20f4f05639ced51a4f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rook-ceph@sha256:bb4d480f5901d6e83e694c0484e4d50465bf8b29a05227e4c59b29916856e98d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rook-ceph@sha256:cca394438d95467a4b00915ddee854cd9d1f8e630ab07f1693fbc532e1eac3c3
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rook-ceph@sha256:7a348b1ac1d03485a3e2f369369ede6b89e419b9a23d7aae8a53167192b93501
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rook-ceph@sha256:b94201e0b888f0a85a4cf9ec43a4aeffab613d7cd991941d4e76111c37f725a9
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rook-ceph@sha256:d304826cd6ad727a3d520e9056c5ca9972fb36393d5f027da8e40a8e56c2233b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rook-ceph@sha256:c21407a4cc3eedbf964f154c41031952e15a5e6f8b4122c5020ac9edb73be833
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rook-ceph@sha256:3952d2c370c1871466118be3607b969c63d8386f07321bb632bddc89eeb8087b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rook-ceph@sha256:288b79a8447264e624d4bb2d6554958512ceb3ba1d16ad48f52c2b0cfec6b7e8
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rook-ceph@sha256:0614cac59c6bf4f887c34cc419a23544a77f3979217631321349f4b4088c220b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rook-ceph@sha256:4a4bd989d6f9be5a9dfd4d3fe364d59cc510b3cfb06f55ec9404d67dffb16e4e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rook-ceph@sha256:6cb6d9e7fec9aa17e868a68e84668313aa1e98217882a9ec53deed82866a5d8d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rook-ceph@sha256:b71c5ebb3a4a2533dc889effe3126bf24b3414cc4af04151a715622d66ca39bd
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rook-ceph@sha256:6375b534d6198fa17070792c92cce5565a65d792acc5aa1ac5784ccd13988b75