Sign inSign up
Cilium Operator

dhi.io/cilium-operator

Cilium Operator 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.18-debian-dev, 1.18-debian13-dev, 1.18-dev, 1.18.14-debian-dev, 1.18.14-debian13-dev, 1.18.14-dev

Index digest:

sha256:d64404d3efc3536ded0354e27a4793693a71948711812a86bffda1dcd6b7ea4d

Manifest digest:

sha256:79235bcaed5bcd7d7584f76478006f03ff6e3fa9a869f1598d6ffa7b72a9200a

Size

79.78 MB

Last pushed

7 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cilium-operator:1.18-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cilium-operator:1.18-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cilium-operator@sha256:0ab1d2a4601e468eeb1e8bc82fb585ae7f96e0538142831f65c8ec0ba0b8212e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cilium-operator@sha256:e07b0e9b180c7c2102aa2a990415c10dbddc5b5a443cf331c7c03c21cf9cbfbd
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cilium-operator@sha256:44cd30b4733142629f03c5cb514d1ad8b1a6744bf4617859b874e1c966dda847
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cilium-operator@sha256:f34ca3a04ecce5eead04dabc3e67b8490f7e9e5f48eb4a62cdf7b76ca013924d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cilium-operator@sha256:b62136326b016d5de9069ee996c07ad0ec0350e534b20da5e2ba64f8ec6532ce
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cilium-operator@sha256:5137269b0a1c891478fc9ac92fb234cd1496175a2398b85b53a8b40233c23bcf
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cilium-operator@sha256:b347019cb8a83deab788a76812e12a4a456abe055c1ca526a33ca9e518836ffb
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cilium-operator@sha256:97bf0ef6865840c3a1286c3166a3b0bdac85565c36f17185c6b32222d1e1484a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cilium-operator@sha256:d403748b28b29e08a1bc86249289db86fff572b6ca72e8ae43978b427f8344ad
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cilium-operator@sha256:81eadfb14b33e244b46d017e7cb625c5437547896b62edb97179c3db1ccced24
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cilium-operator@sha256:4d156740b9b6cb3f478f9a9c57478327453047eb3e4d443ace2c90010d8a3579
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cilium-operator@sha256:c4250598cfbc727f3b129589a624b73bf4d1f9c3114d66140e7137eaaf13d3fd
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cilium-operator@sha256:3d222a6a43ebd4613dcaac9edf4942df13de660dc0ca63af088e5bec22cb4f7b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cilium-operator@sha256:cf9e6666cb597f9d8628c01d45500536aac2c45065b4de03606445d9a28ae878
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cilium-operator@sha256:e92bb9f08ebef5196f46ba1862d1bf7b6b048d49870ba82f90541fcb75febe03