Sign inSign up
Virt Operator

dhi.io/virt-operator

Virt Operator 1.6.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.6-debian-dev, 1.6-debian13-dev, 1.6-dev, 1.6.6-debian-dev, 1.6.6-debian13-dev, 1.6.6-dev

Index digest:

sha256:f9f43bbee43278630f2025dad307ed265e8049c248ce3170dcff53ec972ca378

Manifest digest:

sha256:fa93d189f015b1b111acdee14d3343dcabc6afbca7de587cd5bf04b0ae26da3e

Size

55.19 MB

Last pushed

1 day ago

Vulnerabilities

0
0
3
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/virt-operator:1.6-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/virt-operator:1.6-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/virt-operator@sha256:046a9eb55e3749edd68aaa154f8c3e7e5ec449b077d84413fa25a6d611153493
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/virt-operator@sha256:2120fb0920c8b57b35374002b238e4efb1ed18bc9d3a248f68904d4f9e87323e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/virt-operator@sha256:f8a5ca87f396ff4764d312ce715f74bdee9190f5d01d7546b73283757f269fdd
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/virt-operator@sha256:0f1ef2ceff1c61c98bba1364cb227bb6d2a394f1dfd581b1069bc8933f644ed2
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/virt-operator@sha256:d42c79c1f4817047c450f12fff8259e89ed6de2bb432a3e8fa67a62e87878935
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/virt-operator@sha256:62e15668bcdd7a2b88ae4ace04b86651881424ffee1cca887f0596e79c5e15dc
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/virt-operator@sha256:a4979b6d97a712a7729b68141eca51a480f5304b08836a5f9f3fdaf851c2f1b4
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/virt-operator@sha256:e8c066f427cb502bb23040125a0cc909a0c9c3f4a9025c9670bf7b1c30b1d338
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/virt-operator@sha256:f7b7b350e5690411cc2fad012f2b52606bc5fd399d2b04945257f69392f55128
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/virt-operator@sha256:e70be911de64c5065e4983c8c193efd763490380138c37561b6a4150dcca45be
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/virt-operator@sha256:d06ce42073efb1d066f4f4e335ad91e329808708937f8c2ba39ed83fdd57e88c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/virt-operator@sha256:8edc6237e110746ed775fc86e192827fc6fb6ff888d77549d1ebd0990e73e88b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/virt-operator@sha256:5812ba0e30f5957695e242bb7edb792b49227f176ff55f1b3ae716cf81e48276
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/virt-operator@sha256:08d46edd3ade89d1932d2f0d3961112698ab723bb531261a3d7267463d2514fe
SPDX SBOMhttps://spdx.dev/Documentdhi.io/virt-operator@sha256:b56608fd4886315638af6c782c13432b475fa96abe2adef087755636981789f8