Sign inSign up
K8ssandra Operator

dhi.io/k8ssandra-operator

k8ssandra-operator 1.x

CIS
linux/amd64
debian 13
Tags:

1.31, 1.31-debian, 1.31-debian13, 1.31.0, 1.31.0-debian, 1.31.0-debian13

Index digest:

sha256:daa335de8933359b2f7c7dd009218833353b43024141c51badfcff4e9ae06baa

Manifest digest:

sha256:404033e69b3197e31bb8e2d18860a99b86cde8868075e4b70dbfbaf8ad371950

Size

21.32 MB

Last pushed

3 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/k8ssandra-operator:1.31

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/k8ssandra-operator:1.31 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/k8ssandra-operator@sha256:c3c0c8c7b2fee9cf6a8ea6aeaf4def0aa19d098a871f2be99f0c05ce695f57a1
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/k8ssandra-operator@sha256:88dff9ee6d1c566dd422ee56e69d4bac2e0f9efbe5e5e36ee402b1685aec73b8
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/k8ssandra-operator@sha256:9a84f987145ba675e392424450293650e3ffdc22df0adee5d6419c7e162b07c0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/k8ssandra-operator@sha256:f2b321af2eb91d090be5855a947ee48ace4ce291ba21b3e138340d31e565efb6
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/k8ssandra-operator@sha256:61426005222d78e0a67dcb9c387b5e59dcf874742eda436943e53ffe816ad7f6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/k8ssandra-operator@sha256:b076f17075e9ffb2bb6900a21c29dbf5153942fda821d7aab9c6954441fdf2c3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/k8ssandra-operator@sha256:b8e5fe17e4e043487d4273222ffb7a6e8fda5d9f383056591a95e8a13372c83b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/k8ssandra-operator@sha256:afc547daf687978300ad26db7906f3830b0fb468055b3a49e0277c38a0e92f8e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/k8ssandra-operator@sha256:9a334c06096226b8e5ffe8379671d070622452bbfd9b80f260525a395c56f3f3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/k8ssandra-operator@sha256:6f324cdd7fc32c31e966222f5b24bdcbaa3be0d93084e977d5336e93bda186cf
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/k8ssandra-operator@sha256:0c355b60564c34cc1e93fd229948de81ffc0953939ae6efe49b39f59086a27cc
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/k8ssandra-operator@sha256:b238e89d7586a4d951a6a3685e0c39b2adc55ec9c6e878febfe92a1cfca03e74
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/k8ssandra-operator@sha256:232b88348f6553b8bb096e60c1a55f966f8545b00b1694a6e5bdcaa90a13a50d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/k8ssandra-operator@sha256:51b2ea19a4efa4544ebf948bd341365c2cd37dc5db0cfbcda0323864b0cf2ef3
SPDX SBOMhttps://spdx.dev/Documentdhi.io/k8ssandra-operator@sha256:c72724cb111f41765e986f74233e3ad545ed6bccbc9ea0fb82564881dae8a4f8