Sign inSign up
ECK Operator

dhi.io/eck-operator

ECK Operator 3.5.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips, 3-debian13-fips, 3-fips, 3.5-debian-fips, 3.5-debian13-fips, 3.5-fips, 3.5.0-debian-fips, 3.5.0-debian13-fips, 3.5.0-fips

Index digest:

sha256:a61d6578b5ca0739bb82735e5e5358977c9c472973117d72603c7dbb418e798a

Manifest digest:

sha256:3d4eacd39324f558994aeb4b09136d98e69b9e34b822ce1804c4ad63ddf60818

Size

27.30 MB

Last pushed

8 hours ago

Vulnerabilities

0
1
0
1
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eck-operator:3-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eck-operator:3-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eck-operator@sha256:979687352007f0931a2a187241080630e953a035fa75b19f3b3cac2db8849655
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eck-operator@sha256:b5dac0fb49941663eddc389567ce9e235638a6b64364ea3a497a9af76676ce69
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/eck-operator@sha256:0bc47760564965121b9aeef7678f313af096c41b8c23b39f73f9c411fe8fb978
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eck-operator@sha256:0a42fa9824d1c1d119449a2f7ac6501a1cfbad80dff16f298989250b5692bf44
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/eck-operator@sha256:0821b25a718238b0da83a5ab80b2afe01860cd9ed2bfc463222044f77ff77a08
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eck-operator@sha256:51383371c3004247a7f56537de399908f1dc460353d450c3d172105c6ccbe5cc
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eck-operator@sha256:b2fae05fd5b150d45760db4254ef919e47e21c7ea23d9343610ceb15bddc2ae1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eck-operator@sha256:c839b55eb46e7c2ead6de0a3555f20534eb37770f000ff9698f9e681b116a778
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eck-operator@sha256:ed39321f44a406783801c9b4fd09e0e5507e46b89b17c39504dec3ee3cc41fe7
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eck-operator@sha256:4f7ff3990bffa2c063f5a3533f42e1378452d5c1d239c401504e79d0a69e5623
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eck-operator@sha256:d02bdfb8fd9af8a8f6a15e711a1405ab42dd655c6aef003745133f05a780eb05
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eck-operator@sha256:456ea1c434d7424727f0fd8dc52c0096841dd8cd2748968feab41df0b9406c1f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eck-operator@sha256:f83fd7889babff80b568b5a8c044292efcf51ff99756af1606ebb81fa6bc66f7
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eck-operator@sha256:d9445705fb724e85725cdbd62ee865968d827726dd3d0c26537b88d6088ca0d2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eck-operator@sha256:5df91da1f90982b74ea6840a2f3ae8e313ae3bebc64e1944ac86ecd3723653fb
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eck-operator@sha256:2cbeadc1d7d4747075c533d35330a9324180b70478dfbfbacacf163b5745a027
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eck-operator@sha256:2f37dfb85181d64b979359a4d03b2a0c879063d23e0eb741fb6255f5370fc02c