dhi.io/virt-operator
1, 1-debian, 1-debian13, 1.9, 1.9-debian, 1.9-debian13, 1.9.0, 1.9.0-debian, 1.9.0-debian13
sha256:f1c004f3f3d1637cc21682d672e46f3fbf9862438273fcfd78a176875c3b75bb
Manifest digest:sha256:42e9ccb2ab0ccdfe4329ca54ad184059a30c7617280b41be63922fee63286e3a
Size
15.68 MB
Last pushed
8 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/virt-operator:12. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/virt-operator:1 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/virt-operator@sha256:9304090cb0d1a8b49e5278c2cc24076f21f2e7ee31faf8ef07912f523d393020 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/virt-operator@sha256:a744c54041e2aa3a4df3dbdff8383395078b7cc71f366c9312e692167e7c2c30 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/virt-operator@sha256:142f05670459aed5b779a75503e782b5d7fa50fb1660ae3421d98fa9036b2d12 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/virt-operator@sha256:e4253f0c71a06c8240b880dcffdbb56e3cd50dd37c6aa2463c10fa6fc56d5166 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/virt-operator@sha256:5c4a302b15c23fcffb1b0c0e03b31c40013ee201991b180646fdb62a12c0ca3e |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/virt-operator@sha256:f0a82c2ac7b2b4f26bb84cad1803540defe69f61993646e9d8b879d75dd90c67 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/virt-operator@sha256:9a88fc8cddabd717419758fcdf091379627c523a7743f254d71f93cbc71b9c08 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/virt-operator@sha256:fffbaf204c41fc4951a70203accaa883e58dad7d3db2963566c5d5221ed3de06 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/virt-operator@sha256:c98feeb2b68164fbb5ab377b74220fcd1d98351f5252fe60b11563b5071151ac |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/virt-operator@sha256:9263d094552f3e5605df6593dfc4d9b8f929c1a36976aa013ee4a58dd50cf711 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/virt-operator@sha256:20696589cb779381c7895a84763b68c70937b700afb1745c36afb89fa5cbec0a |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/virt-operator@sha256:d75e5402beaa8ad449dd8542adac5f69b65913664894e51505546877150c2304 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/virt-operator@sha256:eddb228ce254ea804705a77a8676c986fbddfb3a7899c8c7fc1e573c012e7cb5 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/virt-operator@sha256:dd1ce50eac496df9db53b5a20cec46d7cd752b2b8f04dd86e51fbcff5809c068 |