ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 124 - DCA discussion

Report
Export

Will a DTR security scan detect this?

Solution. private keys copied to the image

A.

Yes

Answers
A.

Yes

B.

No

Answers
B.

No

Suggested answer: A

Explanation:

: = A DTR security scan will detect private keys copied to the image.DTR security scan is a feature of Docker Trusted Registry (DTR) that scans images to detect any security vulnerability1.DTR security scan uses the open source tool SecretScanner2to find unprotected secrets in container images or file systems.SecretScanner can match the contents of images against a database of approximately 140 secret types, including private keys3. Therefore, if an image contains private keys, DTR security scan will report them as potential secrets and alert the user to remove them from the image.Reference:

Scan images for vulnerabilities | Docker Docs

GitHub - deepfence/SecretScanner: :unlock: Find secrets and passwords ...

SecretScanner/deepfence_secret_scanner.py at main * deepfence/SecretScanner

asked 08/11/2024
Echo Wind
28 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first