Sign inSign up
Virt Operator

dhi.io/virt-operator

Virt Operator 1.6.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.6-debian-fips, 1.6-debian13-fips, 1.6-fips, 1.6.6-debian-fips, 1.6.6-debian13-fips, 1.6.6-fips

Index digest:

sha256:a9c6916f328cd1215b2be37f7f5964345e916a1ee341022627c98bbb4794e932

Manifest digest:

sha256:7b978108103b62bb6fb4432ee0ad75bb2a19bf64b5c956c11da786c99a3723d6

Size

24.85 MB

Last pushed

1 day ago

Vulnerabilities

0
0
3
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/virt-operator:1.6-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/virt-operator:1.6-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/virt-operator@sha256:5508f38f324880268e010ece41ee5c55b76d165867fb7dc834ac7f719380e583
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/virt-operator@sha256:fb6e38900b4edbf77a96fa3755261027e4c7e839b560a5e000d4a6d4e250e2c4
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/virt-operator@sha256:bcc742ab9f8997365d2cf82adbe9ef2c8a532af4e563a7eed040959d0ed86c8b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/virt-operator@sha256:c1cb3e122799315d7cad4c9c18284faef1e89a8171cc89f7f88eb1b28189169c
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/virt-operator@sha256:f44a14e23a415e750f4efaa3ddf001dec8b5983e604fd3fd130d8724c292dfa1
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/virt-operator@sha256:5999814a033b213bb96b13646670d0c3cb2a043d8e49785fe5be4e3956380c05
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/virt-operator@sha256:89379756e0b9e3c1cc03a53453eb91bafb9211c5e890518924670163f37cb333
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/virt-operator@sha256:19b0fcc5f0e2f2b11a2681b2b6892f990da24fa2d2c0b7cf2d299b2fd30de409
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/virt-operator@sha256:da4316acd752c1c5144c1bd2e0250ec9c7f995c04160f5c6586aa7b80fa71883
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/virt-operator@sha256:2180312c8ce8c1f7501c603d5d580ac7ecbc3569ba2b601a9b52e14f218d2bee
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/virt-operator@sha256:33dc8a149404e52ef98c143ed0918b131d1b8d1ec1d835fd49b32d7a7a7bb06b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/virt-operator@sha256:6ae0029f1e4c65d2b16e32abb3e35fc5b4c71e3cbae4988a3699e1eac2c9ea4a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/virt-operator@sha256:ebb5f5d0e151b8ff3445e94dfeeaadfa90c56aadd4a9e5546b7049650ad400e4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/virt-operator@sha256:87cbb86ae5eb4d94f7486f2d0e89e4e693c8c8929b6a232a8c8ff0410251734b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/virt-operator@sha256:6c24b643bd2d3b7c7ea7d683e63d8d36c1112c137a9da52303cda51e8cbd5a59
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/virt-operator@sha256:f69f07badbb804b768e2a9e613b999577d2e0335c3e0820ea2cb7b0a9ee08f10
SPDX SBOMhttps://spdx.dev/Documentdhi.io/virt-operator@sha256:632e1d5c5b057c78a26e4128ddea953478934dd78c3481018f901b98c3a87bfb