Sign inSign up
Strimzi Operator for Kafka

dhi.io/strimzi-operator

Strimzi Operator 1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.2-debian-fips, 1.2-debian13-fips, 1.2-fips, 1.2.0-debian-fips, 1.2.0-debian13-fips, 1.2.0-fips

Index digest:

sha256:4a07d3a328ca0be470bfc40b5b94708437361b6c0c618327f349cb3a8c7c2ec8

Manifest digest:

sha256:4995d41ae5b7cedfd0c0896f5c22e713d1a9433fdff7f7099accb04cc5dd9896

Size

146.82 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/strimzi-operator:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/strimzi-operator:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/strimzi-operator@sha256:5da7c041e09e42f96174a4e0565db594d126ed5e718f2fa8dc47175422cf89ea
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/strimzi-operator@sha256:21f38a0ebccb9fb85c0a981a42526e61b63beb049c01b1aa09dd7d72d217af4e
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/strimzi-operator@sha256:d5c47426b6c632b776f6e083df48c607a82097093131740bb38d96f9f49d87b5
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/strimzi-operator@sha256:e37552723c9624779c3ea08e865414d04713a924ef263aeb57dab03be9f379b0
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/strimzi-operator@sha256:d1635b763ada31b389adadb3e0c1c5c6ea108bc02f90bde2b0decfcd33f7d19c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/strimzi-operator@sha256:5e2785ca24a5c07d6c6a3efd4fc13558aa5b7957144ba46e3c6f8d033c4ab372
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/strimzi-operator@sha256:166eb2c02efc3f43a5c4f4d1f99f3a1f3640f5bad9f44cfc26f3bdb009137a09
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/strimzi-operator@sha256:73cef786aed108ac3c18692ab41d805dfe15436a05e04d0359bed78e07a85e35
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/strimzi-operator@sha256:aca00718592e68c460e3611f2cd22f8b3690af051f1f46308dcc6ea981a538c0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/strimzi-operator@sha256:cd92ac9e471db0d5956a4711070c1a083431d3983e62eb22cf72d8f5b65da373
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/strimzi-operator@sha256:29212ef7d8c7e71be9a99e0f0aa7552e1635757e0f15101da1c33060073b28ee
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/strimzi-operator@sha256:2f5a6736e57ca11d14c8164608a90c0d3f983728682d1bd4fc27ba7ca178a110
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/strimzi-operator@sha256:e7cfbbda3ea5d13e06890b357abd4b8b0337127611cd027dfd5d0cac054240d0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/strimzi-operator@sha256:6cda1ca10e46c984b827bb919c50969d605ce6f8de7db56e7ed65806a0946168
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/strimzi-operator@sha256:723f1cf5d566f924db272d59194b2fa3fe5a14cb199c303bff60d03e029d46eb
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/strimzi-operator@sha256:8657e31f37555cb4b158c219d3a27aae369b609ccdb77d09391a870b2bbe191c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/strimzi-operator@sha256:3e8682d9e7beebe187a5c28a0113a983a29d28f3110044c8d07cffa534c494b5