Sign inSign up
Cilium Operator

dhi.io/cilium-operator

Cilium Operator 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.19-debian-fips-dev, 1.19-debian13-fips-dev, 1.19-fips-dev, 1.19.8-debian-fips-dev, 1.19.8-debian13-fips-dev, 1.19.8-fips-dev

Index digest:

sha256:294537f07f32663683c2ccd836c0976dbf3797bd7562f4e669b648d01f275c26

Manifest digest:

sha256:388cce22f22d667a66add6314df9bfe48e7938c5dc2e10d47edced91c8aac341

Size

81.18 MB

Last pushed

13 hours ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cilium-operator:1.19-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cilium-operator:1.19-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cilium-operator@sha256:8bc06724005120ea949a33e89cfbf200a7e0835818fad2fba6f34f882b7c5a7f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cilium-operator@sha256:d02602e01dfb3222975bd2853d4f26a147dde5624f77b5fa337bb54ca792ed2f
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/cilium-operator@sha256:c0c3d4edba92c1ba9d0be517eca989c3966ec4f978e98828022c41cce93f5022
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cilium-operator@sha256:9ad7fbef1472f535fd3c644366156de0bef5bbec30b1b95ed1896123b2a1478b
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/cilium-operator@sha256:a5a14eb3e2e9bd13c1a9e0fbe8ad753b85f9f58a7d4677a22317dc57ad73833a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cilium-operator@sha256:8843494f96407537bd3e0d6b316ef842a75053e50f6b226c90f01af81e9fb02d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cilium-operator@sha256:849bd8cc5b187c80e7f65d4110a5d0b38291e1a985c9830d5078c7798cfea443
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cilium-operator@sha256:7a641810cddf3fd45c3555067f2c2c521fbd9334c2b3defe2adee267aac84435
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cilium-operator@sha256:1f7f75987fdea0c656b283a58b98c7e82b1d3df593a22f1a2883c83a72d6f20f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cilium-operator@sha256:15deb9cf6ce308b86e0498f308893b3cc1bce853fb0ca8a14f9e4fe779acbf7d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cilium-operator@sha256:a1f55486bd514add6dab99458b0810b86cfdffeb5a36f08945fb48a0c374e8b6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cilium-operator@sha256:24cbe3f77c7c85d0033cc1b21af0de0aa1110d48d4051f10c1f33a7aadebd297
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cilium-operator@sha256:17e9378a6a37c86f02e4e3600acb550dc4f88121d3363d3767b4fc40c963e52c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cilium-operator@sha256:78a0d2c18dd3758dc04f51318d4ec38e2ff33ea1db04b539f79a1ceb943e42d1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cilium-operator@sha256:ffae1ffafd75cbdafc430b927b662d66f5fcd16fe246d3d1267aa14e4b65b9bf
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cilium-operator@sha256:433175016a15c61b5f50e6313dc04cc261e64ed585da4a3d838d448d6052cfc6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cilium-operator@sha256:4d1327d9579d382f238f2bb6604d6a59d9198e623dd1f4e2bda00b88cdeb0435