Sign inSign up
ECK Operator

dhi.io/eck-operator

ECK Operator 3.5.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.5-debian-fips-dev, 3.5-debian13-fips-dev, 3.5-fips-dev, 3.5.0-debian-fips-dev, 3.5.0-debian13-fips-dev, 3.5.0-fips-dev

Index digest:

sha256:069639bb1103421f6c8d90d7680dff6784d3599ac5f22980cfe868f4430ca266

Manifest digest:

sha256:2b9eceafb0c59c18181cdf5e1a80c18976e76b30dc1520815789574d5c1021cb

Size

60.94 MB

Last pushed

16 hours ago

Vulnerabilities

0
1
2
10
1

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eck-operator:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eck-operator:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eck-operator@sha256:5d8e4e01fbbc8931a8a3b3daa3a9d4a918db3ec1595c11d5863ecef039c49758
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eck-operator@sha256:45a3e01e3735e19cdb3ee863d2abdb231ae6987d9ce9b0ce4f857d66c3772f03
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/eck-operator@sha256:8125fcb75a716bbb869b043767df7edeca4368584df3a7c6012c515ec7a166d6
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eck-operator@sha256:68cae62b7f2cec0d107ddf6dd9bfea7a95917490746ff23a60fadfbd29f5c3a5
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/eck-operator@sha256:c983837908b6cbc02be67084bdd7bf3ea55f404f535b6cca94108e3e9a2c2400
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eck-operator@sha256:2d77258db0cce141a1737983d1555cad11dba5eaf04d9443e109d85db7fb3fb4
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eck-operator@sha256:092d9139f1f6c9d5efab88f67470b851b7fe7fdc22cbba2803e5b352356237c4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eck-operator@sha256:7951d345c341094777ec800ec8edf921cf47f9f8bb310c0c3338f83601850b9f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eck-operator@sha256:3b1bf8808a633acea022d14382925cc8ee8c4977a668097dc039ccb99e459538
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eck-operator@sha256:49ba99d725a51c0680583ffcffe87a78bef27afdac6d02cc4828bc39ed5d1d67
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eck-operator@sha256:ee1eccb8a85236cccb9acef7d1700e97902d8ac42b2c96f7cfa33e0433efcd1c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eck-operator@sha256:5aaa91eb99a826b85b4e05ae992fc7e965c94e974eca14041ff42a54075f6582
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eck-operator@sha256:c0af17cd48d16a4980309f7ae3e73f106cc5358f4e25c490357042c21c50beaa
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eck-operator@sha256:938dbdf5273b98f56685f1d8de29c13fae9c1937bf6b22945ccb90e5d0ca5f68
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eck-operator@sha256:ab0d2b169b6c5b0cb45117eea3d50859e64faac68d639095f3e0497b96e24676
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eck-operator@sha256:91f0d9fd729258a328449092e44534eefde35f3ddd7a94fdfacecfc9dea047cb
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eck-operator@sha256:00a3b3810817bdd3b45d3d06b6505c6aa51e3500574b4232687e742770f467bc