dhi.io/strimzi-operator
1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.2-debian-fips-dev, 1.2-debian13-fips-dev, 1.2-fips-dev, 1.2.0-debian-fips-dev, 1.2.0-debian13-fips-dev, 1.2.0-fips-dev
sha256:426f4c96cf3a238617d688c596bf91e0234691737f6b6a71e8032169d453c37a
Manifest digest:sha256:175e6a4f357316c6b143d8195e186153b3fe656391b1d533d9f0ab29f535e89e
Size
250.06 MB
Last pushed
5 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/strimzi-operator:1-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/strimzi-operator:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/strimzi-operator@sha256:6223b9f38689a4870adac36b714623a94e32d9aca40bd1ba69bf03aea083496a |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/strimzi-operator@sha256:b5824454df0e336123ea5aec07a5346d21e3fc580e5d48072666bda4f683ade5 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/strimzi-operator@sha256:152bd858dedf2ab180f3de10488178687c3131924be3cd779c587d024a2577bc |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/strimzi-operator@sha256:16e3788b997aa9b16e4049088670235025b63cab78a4d8e7dac7a222dfc116d8 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/strimzi-operator@sha256:9513b2d70be056636b97bcc0fa28343e81a6d724c8ec623134ee22b51b848b96 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/strimzi-operator@sha256:987b308b5e6efce2d74332c39a049f07c0be3d4a3c4a3a7224c979107c013e9d |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/strimzi-operator@sha256:9e836e0228fca823c1e80e6ae65ba1d5226dcebb163a93e666da8c206839065e |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/strimzi-operator@sha256:31063e3a48a871c07c8e7a4c5e4fb938966fe60069dc461c1943cdafea7a91f3 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/strimzi-operator@sha256:e37c6ccc72efb367acec2d7e8b7209b801fd68ada31aa9c7d027e03feaab258c |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/strimzi-operator@sha256:fe9a1262ceec22d9829a595af75aa17fb97354878dee84c11ce3614b4d4298bc |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/strimzi-operator@sha256:e0047afbe4173b3f13991be1a573b5dc2f65cfcb5f686fbe75d44bc9a6fb2d40 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/strimzi-operator@sha256:947e987d2424d9d4500493bf769038cd7b1e10e9e62b3cfaff57537ad62b5e84 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/strimzi-operator@sha256:8e3cb9160b9209a737257ac02ceec59a5b1112480f06adbf6c7b1311f1d1733b |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/strimzi-operator@sha256:6d7214f88f2a2f1b745fd6c3df1501800df84431c1a8e8941f63dc9f9cc0ebe4 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/strimzi-operator@sha256:c94e39876994f41d873332e7b8779f3aee0ca73fe3c9395e7f3ef46ac777d0d6 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/strimzi-operator@sha256:682b4bf96c15bbd41c1394775e5001bd7df8a42e34314bbe99eaf4616554c527 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/strimzi-operator@sha256:41194053d7856badd55644e0b02c553d5073376f4066d0dcb9f5645c24255494 |