Sign inSign up
ECK Operator

dhi.io/eck-operator

ECK Operator 3.5.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.5-debian-fips-dev, 3.5-debian13-fips-dev, 3.5-fips-dev, 3.5.0-debian-fips-dev, 3.5.0-debian13-fips-dev, 3.5.0-fips-dev

Index digest:

sha256:2016ae78bb3989cbc0d9f300e14782cadac206c4118ac6e83cd0455313356ae9

Manifest digest:

sha256:d010430a99f18d82b42ca860bd7fd9cedabcb4ec1845e64a0d30c8bb2fdff0d9

Size

60.94 MB

Last pushed

13 hours ago

Vulnerabilities

0
1
0
2
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eck-operator:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eck-operator:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eck-operator@sha256:764645918afd8f396dfb0e0cbc9a6ec27f0e5b1077af23c9e07ad121e2ab137d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eck-operator@sha256:d080cdfe081cc094e5f0b6ffaefac7dc3f1b8ca4b8cfb903121b52bb526db758
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/eck-operator@sha256:8e93aa95caf4d80894cdcba8efe4eb01a0ba5d9eb12aedf021c4c0442f096758
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eck-operator@sha256:d1bd80f8fc3a046d54edb76c7661d8d80a9683b7d2538e241e35032b64ec7a76
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/eck-operator@sha256:a3b5e1c3f203276ec9b76ebbd0d4c433f0be3e9c68a28cb9c500cb8aa575c16e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eck-operator@sha256:2a12d7106400efebf51d01e5d46b68310efa7c64c64f0df559140ea571cc8ba4
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eck-operator@sha256:a11065e7a91a4bafe69d5cb44292a94b26ad43d247e8987f1b69dfe9e06435d5
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eck-operator@sha256:a27ea0b7216e25b85a5be67e773850f56d999ce914b24acf2537bff572230ce6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eck-operator@sha256:564c302062b5828f55c60e89f94d8a0c0096002623bd9e776a54dcba05b31b1b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eck-operator@sha256:225e87ddfa29cfdbd0231ecaaeed7671a0ff8f0a93d121b2c606fd22b26d2375
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eck-operator@sha256:dce7fed46b3fbad181097029a0fe7c488476f33e944a2a4a905c82b1956b14de
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eck-operator@sha256:4ed0599a248770e8adcb66297dd3bf0491a74a9d6148f19874e859e5fcd10243
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eck-operator@sha256:74e47fccea2bdc30fee8db48b77e6eec8b8b6dfd4abf3722d70401735820e1b5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eck-operator@sha256:d7b388ffcb1b5606e77f01459f19b1800a16b4f4e06055ac20f67bdc14f4722e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eck-operator@sha256:218747c35a2694bd0d8f2c1d5ef44d9b5bfde70acbf256e3fd25fec7e53b42c8
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eck-operator@sha256:8a56d89b7acd12df50205673bfc56c41a2a12df65ff5bec62e6a992f9438eee6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eck-operator@sha256:0e0b22a6738891f78b6ac3474f7179970a569f269eae662fc72b77233f56af3c