Sign inSign up
ECK Operator

dhi.io/eck-operator

ECK Operator 2.16.x (fips, dev)

CIS
FIPS
STIG
linux/arm64
debian 13
Tags:

2-debian-fips-dev, 2-debian13-fips-dev, 2-fips-dev, 2.16-debian-fips-dev, 2.16-debian13-fips-dev, 2.16-fips-dev, 2.16.1-debian-fips-dev, 2.16.1-debian13-fips-dev, 2.16.1-fips-dev

Index digest:

sha256:b035dd38cc9665255f7f162682079d1017da0ef92493ad300753d98016a702d7

Manifest digest:

sha256:0e9e553e65610c8efb88a9691ce0e113883bf30d6a0dbe83da5e1c9a2fb7fcb3

Size

55.44 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Jan 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eck-operator:2-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eck-operator:2-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eck-operator@sha256:375bc4d744dd42e4116f4fa57170c1bf4752a845eedff378dad45a6feb8b102e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eck-operator@sha256:2fae19e16cfc5b10927d050c62ac090c9a84d40669e8b8f673e04b65bccfe66b
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/eck-operator@sha256:fc4a6f955c3e64c115b56da3e2d6f968c937370d35040df144f3c4a66a83fffe
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eck-operator@sha256:8ad82a8d9391b82ead29769c9380d367fdc75eb01e1cfad779cb81c08dd92c9f
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/eck-operator@sha256:363ac2204e51690209ba02f1a072c859539b5445995d73b6b77e699fa4c86115
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eck-operator@sha256:da540c1f8d1342ddd0bf3578e5eda92387072afd76df231d50bad1312cd46eaa
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eck-operator@sha256:df2923f472e65c52a1b2d847600c6c60ba3a0027636776fae092096b4ea0ffc7
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eck-operator@sha256:8278fe2e7e6f8fafa78d42d9e6b7d5f1b88620cc6e8988d38b9419e761a3cc5a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eck-operator@sha256:ce842519c79deae489a5fbdcf436e35252d8d6ebc45e55685df928532215a6cf
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eck-operator@sha256:d310a8792f363792ba5a741ab8b0ac9cdb7b226b0630f0418ce358072a2c3523
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eck-operator@sha256:d41c20f1e0cd25dc007c290a0b7bd1921883d88362bf2b7b2f2653ea506aa7cf
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eck-operator@sha256:3a9be9a495834382fe906a83913b3c0871a277e8126036188117519376965d83
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eck-operator@sha256:710af68c0ce7ee6e6f1a2c041df53dbc8ef0772e6f4e03e9037f6bf2461de8a9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eck-operator@sha256:138fc6da7d7263f19ba786a51e8cb1cb3174fc0f632723bb76b7730690a7fc82
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eck-operator@sha256:2980b9e5ae114ad16bc9ec5a064a5b8d3433327a926e6ddd9b3dc144af8803ed
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eck-operator@sha256:f8000fa18e46b68300eada67ed049ad35a2cb11e5b898a61d234b559f0ab8e0b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eck-operator@sha256:ac1c0dfc1e8277206e33b422815ba8ebd4e4889efe81c79c4bfee12980ebf54a