Sign inSign up
ECK Operator

dhi.io/eck-operator

ECK Operator 3.5.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.5-debian-fips-dev, 3.5-debian13-fips-dev, 3.5-fips-dev, 3.5.0-debian-fips-dev, 3.5.0-debian13-fips-dev, 3.5.0-fips-dev

Index digest:

sha256:67bdf5c8a1626d3d2db5ebeee0cb9aa57ba501f81fbf7c491b9e3d5be82067f8

Manifest digest:

sha256:42a9049ed52bc5cde7cd59fc44382dde8d441bc592dca5991e1c6fa76e361152

Size

60.94 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eck-operator:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eck-operator:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eck-operator@sha256:88059a7069cf0ca1bbefc1a348c19edced1e47aa4b46f40159c840b829850903
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eck-operator@sha256:10c7050a6ecc5ce096c567964faaf3540a49244bbad0d3c2c4851c21223e7dcc
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/eck-operator@sha256:1b7f78e58fd60aa9b5a87395eb86083b8cdd4ee7f1bb6dcb5bbcb731900761a8
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eck-operator@sha256:ba0a062981379a5f370d72baacbc51d2a81b6ac3a2a106da41bad647aed1c3f5
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/eck-operator@sha256:d5f98596ba865ab1385bb9c2abb43346d9c5f3bee6c3aba4e34c3e7be7d76525
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eck-operator@sha256:bfb29c07ab45e1528579a4e8e945f25ef31f7c584e79f265f657ea8162c0f55e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eck-operator@sha256:c8a7b58ee33ebedcdf46ba5dccda002e1f1e7cc6eed0741ec1e6e8dc7a93bfec
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eck-operator@sha256:604e0be548e67c79cc02d98b7ce96dcca154d773d4e1e67647a9a3aeeb78cece
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eck-operator@sha256:7e06ae13a7924000e22c5a853b41149372df0d8593bca15166129deef6a1f7b2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eck-operator@sha256:55f83e6d161d5e95982d66afc75c1efe26c81aa772509d4ff7da70ddfac3f091
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eck-operator@sha256:31dca9b1ba228c747227d47ffaff05cc6ec0212ad1bee59d2da9c0c9ccde9814
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eck-operator@sha256:2217a27af86bb8b48b4d93486f15c7fda753a623c7433de33384c0531c88b73a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eck-operator@sha256:d950dac9ad61e3e8f93906eda57ceb31d970afccb4e3a187b9ff21559ff375a3
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eck-operator@sha256:2820cc17d94f649d795a08ba23e5a59557671f2c6c96795c9717c2d1bc9495b2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eck-operator@sha256:6216449108e979277b5b83f6663969f801513d8c665e9a6c4e430385d59f4977
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eck-operator@sha256:402db05b219be2f30a33f240c8bbc65c659b7454bff958e2b9738b75cbe7a721
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eck-operator@sha256:eba22321cf9ad5bb4d5c2b3d55c61a64959f992713120b1528fb388901cba764