Sign inSign up
ECK Operator

dhi.io/eck-operator

ECK Operator 3.5.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.5-debian-fips-dev, 3.5-debian13-fips-dev, 3.5-fips-dev, 3.5.0-debian-fips-dev, 3.5.0-debian13-fips-dev, 3.5.0-fips-dev

Index digest:

sha256:2c141fd23907ba47671bee013bb5331793c14e2de1d61e6deb0e0e835e6ecdd9

Manifest digest:

sha256:75ecf3f5fd059484676bfbd19d1f1c00ff368b885c23f60d28ece13fcb7f72ef

Size

60.95 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eck-operator:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eck-operator:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eck-operator@sha256:a09adab69500a4c4f2d17bd24f8ce130b21687a03c32a044d37c2f252ba42fc5
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eck-operator@sha256:c067cdbdceb1d9233afc869945fd3ce9c2d1c5116ec6453dec6971606a17493b
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/eck-operator@sha256:f3603b54c8eea7fe5134c5f4d08bce15a18364b53fd72617c6d3f82be2b700b5
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eck-operator@sha256:255e1b9191e1ee62e94dcf1e1e4182781f0b94342d116001b3529ce2364bcb81
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/eck-operator@sha256:ced97c6d6ca26fce4f020722b52c1df684e85f6c6a62e04ca2aa2a01f035a03d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eck-operator@sha256:08107c5cf436d61f3003c5648a17fb668feeebb17b9eaea129710741a47ffe17
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eck-operator@sha256:a12c901eaef8327e05e183478cc7a00cc8256f7932a1b8408227d3d9db298345
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eck-operator@sha256:6abbefdf5796a3b0a462537f0487cff74af41db804aecae9ee79aa78f8c7604e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eck-operator@sha256:1ba4da0e6199ac4f9a37c483fec023046b27b78a28b84d144f57e1aa1c25004f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eck-operator@sha256:a75ed2152b1042fd019f8fcb99aa1cb04fc53bdd9d3b3a76f2d7c4dfb332f3e5
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eck-operator@sha256:de9d103dc1508da9117690b92785f31d0948511d296daeb4f33e9969708511dc
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eck-operator@sha256:7510267d596b80bb77d7e84cc8ef144f8a835e6f889076f3473fc37a8bb760b6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eck-operator@sha256:886158f4ab8247cbf39f8b6370a9d77b147798b9913098410026f693f5444ca2
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eck-operator@sha256:bfb0d7665bf105de38459eab3a00f034e51699954386c27dd2cc81b99ab31162
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eck-operator@sha256:c302d7e45197fce579d5f87a1d8dd39780a3b6d85ce186cb269c70a7ddb699b3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eck-operator@sha256:32f864ebd3d11083ce480c496b99c56bae50f8df1259863b3ebdbabea1bf2d36
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eck-operator@sha256:e86ac64300255ea1f5b11cd59f2494afc44106e82176228256f8209aa27f4493