Sign inSign up
ECK Operator

dhi.io/eck-operator

ECK Operator 3.5.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips, 3-debian13-fips, 3-fips, 3.5-debian-fips, 3.5-debian13-fips, 3.5-fips, 3.5.0-debian-fips, 3.5.0-debian13-fips, 3.5.0-fips

Index digest:

sha256:337f7eb6a68d70decaa265eabdc8af3f7c25d47b180416c91f2def049cbadddd

Manifest digest:

sha256:4f8b3dea5aef7ff36ef12b634435afe1b20fd89fbe9ddd1aa8ff901e727f54d3

Size

27.30 MB

Last pushed

4 days ago

Vulnerabilities

0
1
2
9
1

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eck-operator:3-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eck-operator:3-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eck-operator@sha256:29be1eda5085e7bb84e68cfca87819cb1fa957694fa85ef5d1677247a7427f44
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eck-operator@sha256:9c4ce7aed2c3da6614a26d3427be963b2e4a2a03991b6edf1ba3cfb28a56dcb8
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/eck-operator@sha256:cc669df1769bdadc5d85af529eedbc7bdbfff6f03ca5739a2e235072c63c47bb
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eck-operator@sha256:f515319f38f1698f2ee238116164c5ae99ee40c5a3735b39e72f7a92cac349f5
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/eck-operator@sha256:57a9615650caf98b385af35960c18eb74877f7c6677c2d54e6b37c8d982d498c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eck-operator@sha256:42aa5785a760d319dd5920319711d2b9d9b607a5d1a26a1c4ea0b1385ad2123a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eck-operator@sha256:18e11b0cca06db9f4107f7768cf28028c3feeff63a7d0534da3f7ec306a2e039
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eck-operator@sha256:09785004477fe66dc5610f6054362e3109524fbd62e0bb17947a6ae0adfe80e7
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eck-operator@sha256:4eaee6a81c1c98114bbe7654daf9fe575cac7ec68e14ac41df23bb80206be1d1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eck-operator@sha256:15fdfaeedbf06c58089f11f7bdd260b167102143abc434c10f936fc0fe01fdfe
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eck-operator@sha256:13df4058d71611ca360920d3ec0f3a8a51e3b71fb3ebc4d60e5c260c90e88e1b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eck-operator@sha256:2b0ea85818faacb99e3c16cd27970c7acb834b4a9309f1dff591bb4b9104612c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eck-operator@sha256:815c8e9c86bc753a7aa115d115a08be061b624755f39db239895bcc639576280
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eck-operator@sha256:d686f0a0062dcdb5e982ebcd9810a3f374fdecca1997ade573eb17dbde3c1ba0
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eck-operator@sha256:075a27f3d67da5b7ef732179424f7dbe84d12b3d83eeb22c8c72cc551a61f4df
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eck-operator@sha256:73c01a172a3b491b5f52708ac9ba6d874dc319d2246e63c0185bb3a1bd1f37c1
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eck-operator@sha256:dd7e75b360c38510f6f097b8005149b70ffa469760df0a9693346de0251e557d