Sign inSign up
ECK Operator

dhi.io/eck-operator

ECK Operator 3.5.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.5-debian-fips-dev, 3.5-debian13-fips-dev, 3.5-fips-dev, 3.5.0-debian-fips-dev, 3.5.0-debian13-fips-dev, 3.5.0-fips-dev

Index digest:

sha256:7f3410a0d9cc666587967c861c5c36da2956312be344eb7243a51c17f636feda

Manifest digest:

sha256:d825391b545719f6776ce927a179f22f28ae5a0590deaea8ec6ab82f8e2d25fa

Size

60.93 MB

Last pushed

11 hours ago

Vulnerabilities

0
0
0
1
1

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eck-operator:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eck-operator:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eck-operator@sha256:b5d2307777207b169d362d2ec301c8c3703b855a62108c3c73423b1de4ef590e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eck-operator@sha256:4bc132993f0206625f29e08c5baa80f9c490576796ab133eff20b3c5d4f11577
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/eck-operator@sha256:6ec571cdabecd66581c32e91db8c8c6d440c9b65aa04b6e53b2049b38f5a9de5
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eck-operator@sha256:9df25474e5cec05d87f9839d6195fb530773211b6c57f8ac3776d8b5470b7913
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/eck-operator@sha256:633202b8d493ad30ba01260ced05dc7e105c12d9fc6353df33578ce4a2a4e0cc
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eck-operator@sha256:8cec1a665524aced9f5e41d1f5ce73bd6d4d3806084c2600f73a420320fcea63
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eck-operator@sha256:cb4b5dd353f3a336ff867d15ec11ff3385c4905508feca02b1e26e70a738454d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eck-operator@sha256:265a189ebfefd65ff0ec054baee852a74f76b2712fa78d230085cdc0c2bd33ab
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eck-operator@sha256:5c68fb98849d881e83853068d98af9ddff5acf055eb84bb73a89655572de6e43
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eck-operator@sha256:b0ff244d9aa7ef47abe406f37cc292ba53a5a119bd1f44fbf7fef127f85402f1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eck-operator@sha256:6fc92ef207336f72e793f74498f5c2097e0a1483473a17e40339f27989bcea1a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eck-operator@sha256:eb6a1e4fd4882124ee88e244cdec6510417a82e4b632f4a33208bf77c7cfc19f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eck-operator@sha256:607afa7210d9c53c1abc34a51f6245d723b5c966dae2b213ded35beb11c0e927
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eck-operator@sha256:2228b90d774afbc001bc58c19dfc3af3a9346e2774dfbb595ff0e42ea3ab0e05
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eck-operator@sha256:a8e91657d2fbdbee715d525bd8c7b4fdb872eef8806ae93d7c463e311f4860fc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eck-operator@sha256:4c91f22d59b4cae0576a4919d431826877dd1c6469558f7713f87e8b56a89095
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eck-operator@sha256:53b096c97ff099cd695c2189b3133bc953871ea4a8689ee3602970bd63b541b8