Sign inSign up
ECK Operator

dhi.io/eck-operator

ECK Operator 3.5.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips, 3-debian13-fips, 3-fips, 3.5-debian-fips, 3.5-debian13-fips, 3.5-fips, 3.5.0-debian-fips, 3.5.0-debian13-fips, 3.5.0-fips

Index digest:

sha256:36c98ecae3e4436a4840efa012d3646499bf8ca0c0952a1a09f6a3fc4ddbd0ae

Manifest digest:

sha256:195bc1a23091680e859d660b4b25436e1051adeb93cf29c2fffc30cf57715685

Size

27.32 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
0
0
1

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eck-operator:3-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eck-operator:3-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eck-operator@sha256:7dc8b205b2e7f794a5a19a34e3a4a80a6c30b801997150f08c6e13c3695b79ad
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eck-operator@sha256:a9cea6a29cff92b6a7b905c7c6316a766195d0debe4de8b094d90b0ce950b3ad
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/eck-operator@sha256:b08c168d3b145e08fb43573c45597ed445aea1a0507a193195ba26149496ecc8
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eck-operator@sha256:f4928e2a25085cb189d0ab2a94502af6df59b0dd0dbe302d3cb01e8c396720a3
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/eck-operator@sha256:2da025a6e0e2ed1eefbc7b55434c3fd50325a07fe5eab39e1e51de7a797f3afa
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eck-operator@sha256:a6d8766c7d4beec2826b1e073186d339b8479a34412dba9975dfe09a209d2d10
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eck-operator@sha256:a5ae5c48f858095e094c09b3dea919a2ec23972d19f5a7e5e747a139b920311e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eck-operator@sha256:8b35b0806f01da11c22359949ec1471da75f0a418a69cf60ba37c2bb2255a332
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eck-operator@sha256:3d52bc4661257a18f9c5132031f4cb97ebf0896e03e48c2ea288acdc3483c233
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eck-operator@sha256:8cb7132a4b7f48f34bdd36f4d910863829496dc55296cbc20e36d3456daf55f4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eck-operator@sha256:8cdbc338c6400d27e27c85407723a1baada3c6796f9ee18e74c8495a2c27eccf
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eck-operator@sha256:4ad1cc6925856cdef9371240725d96976c7b6f97ba44125fa18bf09e8f378cac
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eck-operator@sha256:a41f7bf30d6889727d02a4e3efabdc8365972ef1c1a96e644645b6fec5861e54
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eck-operator@sha256:a674a919660829be99d42838f7222cc82fc202145b2ae2d2854f27f17cdea9fd
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eck-operator@sha256:f4e230d40a12983c9a6d4c584750f6372e42484b4f3b1814075666d0e69e1850
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eck-operator@sha256:80a93dd42ff730813e40d787981b58c689c13c41396d9dc9465b70692442d590
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eck-operator@sha256:f297706dacb1e085c345dd27ada8d41191494cddeabf53ca0c71033839f31dce