Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

10-alpine3.23-fips-dev, 10.0-alpine3.23-fips-dev, 10.0.10-alpine3.23-fips-dev

Index digest:

sha256:e8d1bb86c9b6960344f7109181e59dfb0df377f4e28ece46bf055e6d62c7dbb8

Manifest digest:

sha256:0e74819c337846225ba5e6d933ae4bf9fa3c24afd412a154ee12a3060ea06e2d

Size

58.48 MB

Last pushed

3 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:10-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:10-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:1a10d177296d328818a85a0a19f4944e4e8bb08ff317b40641f0686dbe660d5c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:45638a48332a74078b3c47bbaf0f07b59c0dadec3f47a73426131a49e52b909f
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/aspnetcore@sha256:e5686439afdb3947d4be8a92dbfbcf001e335c5c369797b6997d5b2b64913286
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:229b4606960309c35a65128b334fe9290a8c412f3a0560d5bdbb893158459298
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/aspnetcore@sha256:48b93f099ef077eb6d833d53c50713c6d9d46f517018756b7eeab1ac780f041f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:e1e7e639a4f6cf96854cab5e8fccba13c6e97dd68757747ea76a846627773d0f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:4f5178c48ff20ff6f75c04564919510287bd6bbd8e6afafc8ac954bf7a379303
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:658e1776332f0347efa95fabf50beccf3a625961d011af8bde547d01451aa84b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:598ecbf8560794226bf23df7f370b6fd3a697cc8715a827d56f1e7624c5dbc97
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:15af8cd3bea26d3dc3bb22c3195cae84d4c80b5003bdd173b5e9ed77df831547
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:e68a3f7e24a7c971992c7ca683e4cc9e0ab16e253e300588147e6d67f17e4186
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:638b3f5054b86d543ad74ee5ff959597945f533bc6df7bbcb4cc9a9954dd09f3
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:dd6870f62f978163db4e7dd26f77c84dd58a5d0222fb2947fe036fea59200156
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:254611607865f8852b2e15cd643911db14aecacbf511b6dc5214e62f5598e315
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:10026deff2e34a4898534a20a3e9dbf49f6f77e10b78d2cda4cedd01df229a86
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:1513a114861842afcbc53acc6ed4057f383b6f66017c65b3604bf61bad93b64d