Rust

dhi.io/rust

Rust 1.x / Socket Firewall Enterprise (sfw-ent, dev)

CIS
linux/amd64
alpine 3.23
Tags:

1-alpine3.23-sfw-ent-dev, 1.97-alpine3.23-sfw-ent-dev, 1.97.0-alpine3.23-sfw-ent-dev

Index digest:

sha256:b655ff9c5a9a0f5be7efc6ebc71c054fa9528f8e384404d5b64b6ba578b8dad2

Manifest digest:

sha256:de13b0e39243d3c65340af48964264687d1c40f5d49f0859b4579b81cf04e6bf

Size

228.98 MB

Last pushed

8 days ago

Vulnerabilities

0
4
0
0
5

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rust:1-alpine3.23-sfw-ent-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rust:1-alpine3.23-sfw-ent-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rust@sha256:e9156f589051f83e00ae6fc959af57876c2e5f1bd4083ee97b6e2560440240c5
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rust@sha256:fa8d7e0335c76fa7dc318f63200b8d967d17c68be3fa25456a6d7eb5f3b7c580
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rust@sha256:95f27665eadf4a4c440df7ec79db5337903b7d2887d4cd9bf2ba36593bb5b827
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rust@sha256:1ec1bd7b56c515487db7ba79d9918a531e2c3b89d9ec9b155fbc34a42ad213a1
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rust@sha256:93dd5d096a1199a627dfe4f9634c58858d3f6df2c16eee2f0c44342a5adaa4cd
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rust@sha256:c756b9cb07ce103424f5edc25658d840738dd850beb5c4272d223213165a3232
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rust@sha256:3b96f2aa9edc80009e865eaa04cdd39eceef78300823ce595208a1f159e62a63
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rust@sha256:d48aef76c82107df5e310e0d2c58d6fa8dd868c68123303f21ab1b14f5166026
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rust@sha256:33c54fe6255432623bb0b77b2594b4e49386e758617e8a0b84436b0ba4a2a008
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rust@sha256:d6d4f1f8c01e784f843d4d83f3d0e5a8b6bdb23e30a96fcb85d887ffc6b626fa
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rust@sha256:ab72e372fd243eded3a8f2cf89604122ec30ba0e259eca3008fa0c587ed87820
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rust@sha256:d62e7c0bad4af02c1faadd7903ed915e914718295b25e7d05f9636a9759c5c84
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rust@sha256:8c1a424613dc06aa96e6cf873d8470d4df1ed28f0ea9c83fe2c33e6cebe93830
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rust@sha256:0d1e685f2696f79557774ad1976e8a882bfb3532b3586058586f81ac1538ea3d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rust@sha256:1c57838f4e6d79a71a7458c173ab4b88b78a66abab50e8a869882649d17984f4