Sign inSign up
Cilium Operator

dhi.io/cilium-operator

Cilium Operator 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.18-debian-dev, 1.18-debian13-dev, 1.18-dev, 1.18.14-debian-dev, 1.18.14-debian13-dev, 1.18.14-dev

Index digest:

sha256:a70591fd9868dd7755a6ba96a8ee5bf28dce50ad14029dd881ee99b3337fc280

Manifest digest:

sha256:f297c6c0f4c91ab9ba44de96f97f52505b62ef2b92d57cd120d4d31aef22e5cd

Size

79.79 MB

Last pushed

4 days ago

Vulnerabilities

0
1
2
10
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cilium-operator:1.18-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cilium-operator:1.18-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cilium-operator@sha256:ad488d13423634b07247ae8dcc5341c6690220e89ddd3e8560f032d338b00b85
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cilium-operator@sha256:667a701de4b75dc9d91674081819847a29d89bbc0c3c3356d7900b702ab8268f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cilium-operator@sha256:9e8990d3e0f338a5c6a18f21e58788a0ae9173f3e0e171fb6060e350fc1ecd8f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cilium-operator@sha256:d2cd58b2aff73f0c6d7ed71406c449dc3959e63e6982b18f8c7ed6984c482b81
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cilium-operator@sha256:8aa5b9fb9bdf0f2dd25cc6659715db77acfc89a781d022111a6221c8cda6bd0d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cilium-operator@sha256:6c55edda5c7a170a24789d26891054953c26e0ff6c71b8ad92fefff089c2364b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cilium-operator@sha256:8968350c98477f4a84b2457e5b25def953e3a03e6bd029b1d383a5d22af25951
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cilium-operator@sha256:2ea5eb4ac43e94e232489fd506427cc14c102d7046b1edd8741a1800550e2156
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cilium-operator@sha256:ff662849e6ff21b12749306d3a5625952e31f8fb28d49150d94af046bab4edcc
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cilium-operator@sha256:f71cee1fe7354d59ba50090e34541048016a6c86e47c631fa3e5a0d0eeae6b96
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cilium-operator@sha256:5bff19a49a2cf2950e85335ec752d33a109d0eaadfe23004b7c6f34cd0e5ff19
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cilium-operator@sha256:2c10723e12ad7ef55d667c9c692e874775d7d421a1a03b6f6f83428d31384177
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cilium-operator@sha256:eb7e5c801dbf9faec6154ea8c4ece954155d756c6dc36bedadcf7e082f658354
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cilium-operator@sha256:20de7c614cc7257c4307cee5edcd5bf12ee14be849088240267fb6d31da597bf
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cilium-operator@sha256:b09f161a007ba0fa5938939bd47db8b566d3da8094f87c4fe1f2adcc3dfdcad8