Sign inSign up
K8ssandra Operator

dhi.io/k8ssandra-operator

k8ssandra-operator 1.x

CIS
linux/amd64
debian 13
Tags:

1.31, 1.31-debian, 1.31-debian13, 1.31.0, 1.31.0-debian, 1.31.0-debian13

Index digest:

sha256:c43dc27acaeaa0e06f89301a7c6d2344f956727517c55c887d06a24d56acf3a0

Manifest digest:

sha256:ee3d80ea4dcca9292ef63f8bacf4a2dc931f6fe12273b89cd88ec95af4a55fb1

Size

13.88 MB

Last pushed

3 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/k8ssandra-operator:1.31

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/k8ssandra-operator:1.31 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/k8ssandra-operator@sha256:7f14664770b95ff8573b5032a6e899b2e4b5a1549bd874c9d230e180473fd870
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/k8ssandra-operator@sha256:f5899a3040613160a0d75a126e4047d3057cc1ec451a0f0b1d447c8e601c8fc6
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/k8ssandra-operator@sha256:0e565abaa55d6152bfec0ad6573c77d41793891bb6e365f6d6621cdab981962b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/k8ssandra-operator@sha256:7919c4775b005ae1928a9ada9393fbddd626caca62abb31dec4689c7b82b6dc2
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/k8ssandra-operator@sha256:2706dca3ea6a94acdd1a93136c37c35646e1162a5dd0bd0fa74bbb50f238438a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/k8ssandra-operator@sha256:03095f5ac723a81cad1d3a2b57f717dcd80229c233c9f827ac458d01b5733e0d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/k8ssandra-operator@sha256:e0f8f37c48c8c0c8d6581c8a272302c265f4d6f8cda636bfa76894df68e532d7
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/k8ssandra-operator@sha256:c1717e932402e373322feea43e58056a69168e352b5bf7a9f4029e0e60fe6c7c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/k8ssandra-operator@sha256:12f87633205fae3d1e77f0336efc55d9accc23e188c09fe14d0848d953c3d46e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/k8ssandra-operator@sha256:c84b8ad1aa7e0ce35e0e61ba76669b3a3fe05355fb8c8b5e23efd1f46e7a357d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/k8ssandra-operator@sha256:c3fa948eee2a7d1e4656b61456935825ebf6e7b8a4a0283e2308294092284c22
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/k8ssandra-operator@sha256:ed34dc20ae36b97182042e1cfdebd8378bd01fd1397250219ce8510fb33fff03
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/k8ssandra-operator@sha256:1a26b97f5ee0267d4f20cf438201162a623e48d9e1e1ce509d899635c9f81cd6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/k8ssandra-operator@sha256:c69b71fc8e4708d06117a8c2e9d17028f8909e7d04e2de2f895d721e5fa81efa