Sign inSign up
ECK Operator

dhi.io/eck-operator

ECK Operator 3.5.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.5-debian-fips-dev, 3.5-debian13-fips-dev, 3.5-fips-dev, 3.5.0-debian-fips-dev, 3.5.0-debian13-fips-dev, 3.5.0-fips-dev

Index digest:

sha256:a9fc3fe85d3a7b03eba7ccbdb9f578f2dde827f1f1a5b96e03f9e17a4e3d2d5f

Manifest digest:

sha256:db0ad6e6faa71e035ebe004a7ed8c1e361376e39206ac1198d09387f35ad7ac5

Size

60.94 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eck-operator:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eck-operator:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eck-operator@sha256:a5f1c9c086b33bf76dfc4e796510eb0599ec4d71893dadb5f00667c29103daff
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eck-operator@sha256:0d7253a3ad666eac36dfa4d141a769f0ca612129f3d1c710edbb3a95cdff4318
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/eck-operator@sha256:d757349d1852df5f738a6f761c3fed0c9d12a8f267d05bd15beeaba5ca38445c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eck-operator@sha256:489ed78b6bf9574b356a8b5b3085c235b06fc358ce7304aaa0184bd50e165b3f
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/eck-operator@sha256:99ad75b7ddbed85de0a546776c207777e2262ee66cf32531cde0d05cee80bec0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eck-operator@sha256:147843932b6e08c330b078684321eb2bc91d984c76224c11d8e060d7ef8e78f4
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eck-operator@sha256:0f4dfef988a6a3250ccab7c1b8a427d8884508d94ebb173d347c220d8022597a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eck-operator@sha256:ffd9051cb27179e37b36f613142a3cd0cbeefa8c2c0e6a51b725600cc3c43516
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eck-operator@sha256:b87a387e1c64e40940763d2ee8a31371369fe2919b9237668f146f5b6b353e86
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eck-operator@sha256:e2b2ea49e776a34113a75df693ca11597118be5d9be42d25159ab12f5a8aa080
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eck-operator@sha256:4ea02ff033d887da14b353789c46c2f751682a98ae1229d7d4e3337f0cb99e84
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eck-operator@sha256:118acd202fc286edc350d90bd4d308c5e9ddb678c67db9a5f945a360c77debb9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eck-operator@sha256:93b357c1f95de28fafb9bb9a413cbe50a5f40088ac34e8a7d48d37dcac590bb9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eck-operator@sha256:b681aeb76b9b5ec19536dc1e2062a67dcd0e912418acec77be130a0791f78d5c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eck-operator@sha256:f4b770485854054134bfdfd4e897a064fe0ac431963b3fb6be2e35b1f0d38e10
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eck-operator@sha256:a8f6d0305e5e57621446a27c42b94919d835808ccb813e2bd234a88dd6e3f412
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eck-operator@sha256:b76328d47da979f4841a54f28b03ddd6da022a3a63ffab29550b9c6618b79471