Sign inSign up
Cilium Operator

dhi.io/cilium-operator

Cilium Operator 1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.19-debian-fips, 1.19-debian13-fips, 1.19-fips, 1.19.8-debian-fips, 1.19.8-debian13-fips, 1.19.8-fips

Index digest:

sha256:cdb5c906011d58f1e95b6ba9b1ff8c1bdf22f66bff46f782eeb23ad6974d67c9

Manifest digest:

sha256:02f4dfd418739fc724b4a8de2410e311e1b3be76e21ee914889b4af0e3a8a9f9

Size

36.91 MB

Last pushed

8 hours ago

Vulnerabilities

2
8
0
0
3

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cilium-operator:1.19-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cilium-operator:1.19-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cilium-operator@sha256:27306490f764eb387788b5be4905411a92d81bb1e548e0c928fe6185edcfa5f6
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cilium-operator@sha256:180fa042b6afd0c1f504baf13a77fc507fe41f336e83ce22f7781f98fa7994a0
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/cilium-operator@sha256:e33cac7061fcc0c16138362d472577a7d7becac8f03bd1d92341710b76d0dd35
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cilium-operator@sha256:4a7237e2545b79a47ac81ebefb6897b4d122c5d5d3ff3ee59c356caa0413736a
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/cilium-operator@sha256:cf66809aa3f4c4b8216d50e0a857b9c0f0ffbffeabe40e2b827a2a54786a84f3
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cilium-operator@sha256:5f3a44b9fcbb9c30f66ed102666c714611efb64ded42b351a78aa744bb4ee12c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cilium-operator@sha256:30aac139b0250f5af74b30f4205e77ebc8061d79d621e3acf45841e8ce904eb6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cilium-operator@sha256:dd43476ff5df11f043f6e7285273d6a1a003eea0f196839e64bbdd7fcd868f74
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cilium-operator@sha256:b64f5ee977ad5e87fcfd9461d8e78b9298b3756fcf95b019ebbba9ef1f2092d0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cilium-operator@sha256:6f621aa47c74489957d120b649e5098d4042b06ee17c67ea8fd82dda9cf0699b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cilium-operator@sha256:279c6b0cd8d327ded640ec2dc4fe9eec2ba8817b271d7a9f15a6f71be494b257
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cilium-operator@sha256:71c02435541d75c0d79a8e4ca0e0cd9f11a59e6bd77bddb1ae668709b43a4588
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cilium-operator@sha256:7ca51548091526bede3c8e6c2540dbc6c435bb22ef5daedf06000fec5ae5a39c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cilium-operator@sha256:fe3782dc821a0b55fa5f2992c36e3f680e2c6e7d4a6412db90cb3b38283f92ca
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cilium-operator@sha256:1a5f593467a97bce02cf9400f84d2038202aee80bf19445924cebc4bf45d6a9b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cilium-operator@sha256:6da092f6d286cfb38c11f22b4c8d7998a4b7774f860a12b56908216a9095e69e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cilium-operator@sha256:81eee5dd3feff4cdcff4ba891754f819089b4ce499e20b6c01fa24f59a291cd1