Sign inSign up
ECK Operator

dhi.io/eck-operator

ECK Operator 3.5.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips, 3-debian13-fips, 3-fips, 3.5-debian-fips, 3.5-debian13-fips, 3.5-fips, 3.5.0-debian-fips, 3.5.0-debian13-fips, 3.5.0-fips

Index digest:

sha256:5eedd1fe5ac20e541049d6dc877e938dc237f306602e903d93a9468e1a9d694d

Manifest digest:

sha256:ec684ec7c4604279c3906f23ff05eb173d00c88c4d1f1489523a0c43b5507508

Size

27.31 MB

Last pushed

3 days ago

Vulnerabilities

0
0
0
0
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eck-operator:3-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eck-operator:3-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eck-operator@sha256:48f2f17091230576e42d2f60443a1f20526355326cc75b25d3fedb65a9b82eca
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eck-operator@sha256:911638c895235a2efff3786a4d157fffcfdc2013b7d6fd5cdf252c611069d57f
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/eck-operator@sha256:3be25f5e3e861da5c9066dab11ba5fa6c8b28074787c3d1f56d516ba558fac50
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eck-operator@sha256:34c501bffb6a8cb616e2929cd33fabb30ed467a002fe53c60b04ea9c7ae43913
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/eck-operator@sha256:b5b82ae0e74598a88aa7306ad5abc117a4eadc8d97ea8f2e68f03581e2b48562
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eck-operator@sha256:b0304397a8e690934124fc548e5c2649f66fca1fccb4410b05c3df8c27be8a31
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eck-operator@sha256:928236ffdd7ddf468dc1bedfa33e28b7cf2cc18f18e596f38d981cbc02e80fa3
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eck-operator@sha256:1056e029f5cc85a140ad0e4b9c7064582f1bfc667c55c743d318c31d347dc11b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eck-operator@sha256:2cdbd60540d41800341aad8e18e1e9731f8f5251dcc0ef1a26a70b4d8d333a6f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eck-operator@sha256:4ded88f3b570aadd88b16384faa51555c5cb56ca3f9903f7ea9fe75f422bc15b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eck-operator@sha256:9ccfd94e6b59a2c52934e386031649adb43438beb1761d353846fab3a0479b19
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eck-operator@sha256:1dbf227653de06ff1d4e672916c97733b2f9eed8f67c0735b8ca2dd31b042eea
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eck-operator@sha256:819e487d44c449203bb2848dce5937b8b983836bd90c28c64328c9328942b34a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eck-operator@sha256:9a52ec43a676a01c3c0c53f6830580ce018cce60221896c026412c553f403eee
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eck-operator@sha256:6c18968f038f2390b0dd20318008e9887d662f01a86987c5ab88de1230155e7b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eck-operator@sha256:e6889ce52c934f7cfd5286a7c77a360828034c3268b034103170004a1d5432e9
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eck-operator@sha256:a71242d5b6fb53a338d3af1b4687c5c9af4041f36d70a7c175ed42e92a1cbc75