Sign inSign up
Forklift OpenStack Populator

dhi.io/openstack-populator

Forklift OpenStack Populator 2.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

2-alpine-dev, 2-alpine3.24-dev, 2.12-alpine-dev, 2.12-alpine3.24-dev, 2.12.9-alpine-dev, 2.12.9-alpine3.24-dev

Index digest:

sha256:75f5493c3b1941f973e3b75e9f64c9c11d23ad2f053535e6664828b72f7a5210

Manifest digest:

sha256:2c9a29402a32076b4de478f57d202a831aa368296d18a334c6045ef60501a4be

Size

26.93 MB

Last pushed

18 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/openstack-populator:2-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/openstack-populator:2-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/openstack-populator@sha256:99ee00d51eac2ee4a71517fad85097ece53c111d209b153f05a47b66a6cdd7ea
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/openstack-populator@sha256:84182775166e939db00f0207eb3533369ca38d74ac39c52402f3cbd68024dd32
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/openstack-populator@sha256:c2e8642fe7a20410c2a492bd6ed43bebcdfe3f3b84f816d50e05d5366c94e8d1
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/openstack-populator@sha256:3ce6bb18dd337211db512eea7e1b82521ba6a640017cb378e8fb88108c42e112
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/openstack-populator@sha256:6218c16b57780ec0a131a6874c62375fc5c96b4a4ce3b9c4884f54241f7bdea7
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/openstack-populator@sha256:11bb57b19ef6afc5d63c3e3bf41615c867db67d10bcef99538730a0735e7d51a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/openstack-populator@sha256:56243883aa48732c99515467aeb0277c93ee2b4e30d7efaafb444365e318fbf2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/openstack-populator@sha256:2648efc6d81544438e2fe337c531d4c39b814dbe1b464fc9d03ba11119c0b3c0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/openstack-populator@sha256:bae6a2f9fd05fd51afc0f4fc80ea8845be01b9b52e3b2d60670de17fc0974997
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/openstack-populator@sha256:c30667f263dffe156f070f09edb59a0e0ea2fadbe480c0945647d63de63ad30b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/openstack-populator@sha256:5edd51214013ad64461f0b91afa447aedaeae2e6d92a9390342e3b17c0847bcc
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/openstack-populator@sha256:bf8f774bf4da9ef32a969967b600bdb39cc9aecc0aa02a59a3399dd479d495b2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/openstack-populator@sha256:f9554e44a56373d0801fcc7e6ae34f6a43b53ea24c823ded6a145cd671502a95
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/openstack-populator@sha256:5fe0d9028f2285a5778dbc7742d3a816a17a91738c6faec0490ffcf189c8d204
SPDX SBOMhttps://spdx.dev/Documentdhi.io/openstack-populator@sha256:b07757621e101d2e68c048a54e94e00d4d15867eff79ca0b48f1b32730273ff0