Sign inSign up
Tigera Operator

dhi.io/tigera-operator

Tigera Operator 1.41.x

CIS
linux/amd64
debian 13
Tags:

1.41, 1.41-debian, 1.41-debian13, 1.41.1, 1.41.1-debian, 1.41.1-debian13

Index digest:

sha256:6c9c18794e15c291f42f851cf7c38b2ae3f989b4a87ef5090d72f00f6fa1c9db

Manifest digest:

sha256:16befc96f93bdb92ee83de4387f2c27415ccc0f1ee439e3b7cc434b86ce9d04f

Size

20.03 MB

Last pushed

12 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/tigera-operator:1.41

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/tigera-operator:1.41 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/tigera-operator@sha256:921a3264424353a268d7e89531681d00a760494f240a898c2926e469dbdbfeae
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/tigera-operator@sha256:ab4593b3d4b277cedee90117ed20af53db70cd1a22d82b05077bb3e0063ab418
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/tigera-operator@sha256:8924109fd45f3cfa53ea477455fefc7b9086a221c7141e19c2b32c5cfab2f17d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/tigera-operator@sha256:45f11645be3ee185b89f7dc7884acfd4419762b45c4f2dcd19dbd0f3d3e0773e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/tigera-operator@sha256:c5ef2846797f8a9e1abd87d5ceca7c5d5e01ec08fcb0fbdc76b0d2e9c45a0b0d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/tigera-operator@sha256:c5a11bddac803731595d1ffe262f49b5e1780a45c0e67f4477d41bbae9dfe21d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/tigera-operator@sha256:c0684a6e0890a344eee29a3fe70aa1dbc3b317762aa946136217609d8980d11d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/tigera-operator@sha256:b5ea502dc60e6c8af1d7c6bbba049edb05b2e5e0818a92c4dc15f28645e02c9e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/tigera-operator@sha256:87fc95a0fe2212bc32204596bdc3f71d7d6a4e679c753a2c1db0219275b5d937
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/tigera-operator@sha256:4067c9a772e8ee885dcbf4c171133667817fd30e7a3f5541e25e4df0ca8cbed1
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/tigera-operator@sha256:647666bc08f4833fc0d781b4bb01ce86a63c43e6987be66a29ad27acba69a208
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/tigera-operator@sha256:07307735b3e4fb361ec2c18198c4fad4cc4fa35748967d92def3d64c51981fe2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/tigera-operator@sha256:d002951e561cf276df472d847ba8a96ff7a4b04c440825da7d7eae9a0adbb3dc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/tigera-operator@sha256:ce8f3c5eb84495299aa05d33c655da91b58dc2fe402067382e7bfb65d3a7037f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/tigera-operator@sha256:b7f12fc653f6516d12994e064b7b348cd744993c3ed22aa09850ddcf8b748a61