OpenSearch Dashboards

dhi.io/opensearch-dashboards

OpenSearch Dashboards 3.x

CIS
linux/amd64
debian 13
Tags:

3, 3-debian, 3-debian13, 3.7, 3.7-debian, 3.7-debian13, 3.7.0, 3.7.0-debian, 3.7.0-debian13

Index digest:

sha256:d7e9d396219675bb76b18b08eafded9eb184fad1130d9eda19ace1e6c6ab5fb1

Manifest digest:

sha256:78d645a7eab55bd623547953a92bcbcad41703ea2096a013c1f0e82eadc5c888

Size

306.68 MB

Last pushed

2 days ago

Vulnerabilities

0
2
8
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/opensearch-dashboards:3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/opensearch-dashboards:3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/opensearch-dashboards@sha256:271bc75e4b0be4112aef510ab5703926dacf55b6f33317004a5c928f476dcb1b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/opensearch-dashboards@sha256:e41c50fd8d0539ee927508d8ca4487690a9a5220e3832907246e6af72534e54e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/opensearch-dashboards@sha256:9d905abdc2698b962a5e81613213869cc1284b1292ee2f87e0ee715d8e5c3265
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/opensearch-dashboards@sha256:1b118c7f676500f133059b68b82f02907284dde7278b3b9ba286cf962ffc95fe
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/opensearch-dashboards@sha256:69e1538724570b5e891d5ec7f5ee777b289944159119e448df2c6592ef12e8f2
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/opensearch-dashboards@sha256:e1a2a09009dcf597a146078469fe48c63c62541dcff600309475f64c162c9792
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/opensearch-dashboards@sha256:29846fc642e627647207f23b93df04123f25a0ba44aa8115fc090ff943c55c11
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/opensearch-dashboards@sha256:598ceaec5c9a964eba9462fb6026f8ed687c6ae8797d5fbfa32a2d0be49287aa
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/opensearch-dashboards@sha256:35717da423cd0da52cd908825d1aee32f6c0283aa27fa945dc5e00f993a3ad41
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/opensearch-dashboards@sha256:7e1ccbd088bacd6440ce1f11962ef6fa2ef69d35fb76d35252a50744fa992646
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/opensearch-dashboards@sha256:4fb903bcd7c8f6d75bb78e3a685d3911714ced6fa2b55b999b9600aa5096d74d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/opensearch-dashboards@sha256:1c761751a0c8a7b61bfb1011d75894637e8490425cca87fd0e30d02d61a7131f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/opensearch-dashboards@sha256:6356c4173a21f17bcdc893ae4a31458e9ec5047cda8fbe2a1c34c52e6b7c6b88
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/opensearch-dashboards@sha256:575ab1aed6f8031fba0bbfe2961e524ab81f80592bc668fe190f0c5c346ff0d7
SPDX SBOMhttps://spdx.dev/Documentdhi.io/opensearch-dashboards@sha256:e76bf84a35e2bc73b3030649d85409e5440dddfc7bc55027cdc860f2895c6e97