Sign inSign up
ECK Operator

dhi.io/eck-operator

ECK Operator 3.5.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.5-debian-fips-dev, 3.5-debian13-fips-dev, 3.5-fips-dev, 3.5.0-debian-fips-dev, 3.5.0-debian13-fips-dev, 3.5.0-fips-dev

Index digest:

sha256:b6b69a838b695ef900bc0d684d7493dc765655797f8071f645bae930ea6814d2

Manifest digest:

sha256:29dc3a3f1778a4b3dcab9b24dcf71dd272d98ba04bcf394a79db65ffb607b3a8

Size

60.94 MB

Last pushed

3 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eck-operator:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eck-operator:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eck-operator@sha256:3f48ad668abac52d2c0bb502a67bad87bfed2d21bebc1084b0770ab43445b997
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eck-operator@sha256:7ea565cef3bdc6e8f7fdff6a23416881be640e7c70fda013d911f05982c26d44
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/eck-operator@sha256:9fc8a10e2103bc378bbd75428cd9938bb88c43fee66b3cf10a0d55e8ed28acfe
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eck-operator@sha256:35e2386c6233b300c9f2e838f0357b54492069d9720e29579b88c1b93b608c79
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/eck-operator@sha256:a42999a8f3ae1e6aab38821e6bd80d4a41799af0867b619d73c229f8758070b7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eck-operator@sha256:870a52ed3e691bc0b7feec706c22f2192595b7c0001f4c33e2d10e58f69fce7c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eck-operator@sha256:b8cc5e5f6aae2e8ba907271570c34103ef5ce8cfb881f4921aa77077dbf8f48a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eck-operator@sha256:a86b12dba91fdf98613a191a9b9e04f74b9917236b59ce386e507c9512b2db28
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eck-operator@sha256:93fae1366f2955e7e46eda44950067a1f868fb8d651c325f9ac5ee51d5047734
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eck-operator@sha256:afa8e54fea4fff0be95d47c990f095f4b237ade8017ad9c27c2393944b65f443
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eck-operator@sha256:f8d335972a18d35106acbb2820b93bc21dbcfab0a98458a2bc67ccc637c5c83d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eck-operator@sha256:bb503afa6ef75579399887296d4417e5e79f4d4a30aa2696249a66dd84641140
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eck-operator@sha256:841d8269b6057c51fde8b8bd53608e69a46b954626b82d79a2f2c3d25df7cdb9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eck-operator@sha256:496098a61c8ddf494d391536383fd053b143104e8478889fe0575c9e8c0f677c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eck-operator@sha256:8eea1268e43af4e4522db810c8495484bc799a99f7f78e6270cc12705718ca1d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eck-operator@sha256:f05c2baf1d80d645ebbcc624649edbaf4a306f32e73e6c0f1c23f1d98d7dc4b5
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eck-operator@sha256:8da9d6a039e76a82a00044cfceb13427bff06463bb199771792bddc29224e555