Rundeck

dhi.io/rundeck

Rundeck 6.x

CIS
linux/arm64
alpine 3.24
Tags:

6-alpine, 6-alpine3.24, 6.1-alpine, 6.1-alpine3.24, 6.1.0-alpine, 6.1.0-alpine3.24

Index digest:

sha256:31fa963d5b8afd5109ee9d5e27b890d8deba907a6f94f2356ce48db5a7b0795a

Manifest digest:

sha256:8723e8cde01775f6341a842cc4ffef044270c88fd741cca4b940a68b996d262a

Size

281.89 MB

Last pushed

3 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rundeck:6-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rundeck:6-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rundeck@sha256:126a6f5992bac1b0e17a102c36ce380a6248c964d4e089605b60c9859a8007c7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rundeck@sha256:61a0c6611c7ed45b4a7f4cb2f0ecfbda463196c711c759cbebcecd86ee6b5a09
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rundeck@sha256:e9d7230d0eb7aa4534bc62e9b6e0bf61eb8a3b5729a996d223647febadc6e306
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rundeck@sha256:3b0f3497ad8de646c6d84e91a50cfc960704b51fa8848f683fc2ece3119b69d5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rundeck@sha256:c119de9c51686a1dbd334a98a62213f03cae904480a04d82d4cf69a5633961ba
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rundeck@sha256:74f9cce215926ed3421cf69425196e56aa08b0a49071b8dc31fa80bda84bf6f4
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rundeck@sha256:926388ef8987771447baeb09ecbd64ae451df80903753be97531e08e11c6e93c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rundeck@sha256:bd78d22c9617e17bd493ad7ed674b0911cceb0ee225b88260c6214f96ad92929
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rundeck@sha256:76630ef325f9e8fd638128f0bedf6b0ac7d039960061561f508187b0d18c2fd8
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rundeck@sha256:a654e93a52cc8428d197259e9fec6758660b022c8587a75391477f603032231e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rundeck@sha256:174081980b1bd875b244196fd72ba00876cc6059c62a5f571f9ad827f8e0081a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rundeck@sha256:b8ca11fa19c31529b893f9c08dfee8d4898e7432e11566c301fc21f0685df02c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rundeck@sha256:95a71667c9e0577b1587e704c2a66497aca64f7c1732c4317b2a00d8bd74b0b6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rundeck@sha256:91f7a694183c7e59a62ff36259c1b68cc349d929ced2a157b8ec0bb274928533
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rundeck@sha256:8e482817d69be05039f49d5d4148f4a2eefde8bd390ee462fded4f09c7b2096f