Sign inSign up
ECK Operator

dhi.io/eck-operator

ECK Operator 2.16.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

2-debian-fips-dev, 2-debian13-fips-dev, 2-fips-dev, 2.16-debian-fips-dev, 2.16-debian13-fips-dev, 2.16-fips-dev, 2.16.1-debian-fips-dev, 2.16.1-debian13-fips-dev, 2.16.1-fips-dev

Index digest:

sha256:a8976cb9f44a8bc027fbee451fc4b8314140c9519d1778596db74a4d398bb23e

Manifest digest:

sha256:73dad3c6df2bcc3758273b77f7c5c9c78c2128e7fa2b0ae42a76a6b526f6e6ad

Size

58.99 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
1
0

Support

Active until Jan 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eck-operator:2-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eck-operator:2-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eck-operator@sha256:bdfdaa7427026910f2ab46b6864e45e5f29e47698a22f4f4eba42983b569d57d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eck-operator@sha256:7f16b50426cb7668fead3b8b166112f8b4f5cebe86f166a3a3f813ab2b663c7d
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/eck-operator@sha256:25ef504f1e737fcea0933b492627dddc0ad08dd96ed10efff7224b151d5e4cb4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eck-operator@sha256:82d7e4fea761a34ae87cb71523a6a5a06c9d2f74819b0b72a99c532b3341b12d
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/eck-operator@sha256:7526d381b0ddd455f3ddd0b0f623460f92a0269e38d3d01a860f85395d0c8389
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eck-operator@sha256:e3965732d063e061059100ff5c16db5a0702671fdc2188c65e557861ca87a799
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eck-operator@sha256:a1c0862845c47e4b347070b43d2765502420190a8243732ed43691e81dc4ff7a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eck-operator@sha256:16d45e3b84352aadb8b3e466bb17f9e3172854c331fb14754b20cc5df44fd978
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eck-operator@sha256:8a7758a53ea09ca060e409e6cf86afa292102f7bdc9bf34bc9fa81115a385c48
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eck-operator@sha256:664bea868e6f0e4daf35f99354f1866813b88531de4148c64f7d05300db68f6e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eck-operator@sha256:610a2c9de91b9b8debb84d7871c7b5070a1dc3e7013bfb6c5c1ac3ec48c57ecb
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eck-operator@sha256:f6fcdf4eb1b33e81209ab1b0bf6d6ecc39bf0ed463529a74d45a1893f53b3b83
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eck-operator@sha256:552d41f1640d8ba2c0fc5ef0e780f843cd44cc71c810b38907bdf0024da5e1fb
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eck-operator@sha256:b369cb06f299c173f7507cd0f577cfb6d97ef4207697e3c06091d6765c07bb1c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eck-operator@sha256:24b2172e52f9a029a8043eb56f0e45d804d2a4c1882cd778c3252cfce0c68de0
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eck-operator@sha256:209e41fb4779d78c50c03d680d715c55da8435589daed14f79d41298da6d8d1b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eck-operator@sha256:a1a078a73cdb5d0d1169d208101e0cb2ebe349e107ba0fcd6685d69af207c458