Sign inSign up
Tigera Operator

dhi.io/tigera-operator

Tigera Operator 1.43.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.43-debian-fips-dev, 1.43-debian13-fips-dev, 1.43-fips-dev, 1.43.1-debian-fips-dev, 1.43.1-debian13-fips-dev, 1.43.1-fips-dev

Index digest:

sha256:e7aa0ca3f30064676b9a4f5eb06952cb8b736484f69105bbb603e6579e608785

Manifest digest:

sha256:0c805c8a35e0802b8a2f8f092f7db06e46c97200a038f25e596ff2b8c7fcae0b

Size

63.41 MB

Last pushed

18 hours ago

Vulnerabilities

1
3
0
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/tigera-operator:1.43-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/tigera-operator:1.43-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/tigera-operator@sha256:af2823525880765814e5c7609e711bdf3906d6a5448203cfe015a3399ff6855f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/tigera-operator@sha256:a0daf45e3608c22e54b55617996783cf891f74eea1351ef808d7b2feab4936ea
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/tigera-operator@sha256:6b42a1df3048dc8c8a67630fc1d7758eb2710f870343a22699ffadbda294d6a4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/tigera-operator@sha256:14df6d5561a37a33cccb68aa9db16e34bf9497e85c085334019c1563f8d0db84
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/tigera-operator@sha256:e76a5767e23074421f1ca136d14b7c57f551dea22ba2d53ee7d04178e26d667c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/tigera-operator@sha256:7dadc129e097ac6963d7183d08f20018b623221958559f161d4b41bd394c983e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/tigera-operator@sha256:69469fee69964c0d3f3294ff5a117c2ca8a08f80c45e7004c34dbc38d9d87168
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/tigera-operator@sha256:d51c857338784185777abbbf87076056aebf1b8c7886e06aa60dc09aed9f2b83
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/tigera-operator@sha256:01d48574adbd8e4ab75aefcc772d228a3bd5d2338526bb2ae18704e24596d947
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/tigera-operator@sha256:821804fa72335017d63c7da94b1668f64c131426571d18e0fdcd0fbbed0a9c70
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/tigera-operator@sha256:c5e1d20385935615382e4b1c82485672e978bf769c65dbc719f6044a62c66e9f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/tigera-operator@sha256:74594b99aba2238b62533ce0ab2c9b0b0029d57c8881a44f554080d1783f29a1
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/tigera-operator@sha256:9e4c5fbb86c199dd8d61de8808590d2d19f5305ad6b08e42bf2a95d9cb46fb59
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/tigera-operator@sha256:4beee5c11057e2ad409d27a09e4416af73ac5b8f8fdb50b92d2c7baae0273798
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/tigera-operator@sha256:ea9801745f4505cb5a98a0af91dc6e1ab0ba8a3ec0f9416ef9b303364a81e648
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/tigera-operator@sha256:9e9609408c3a2219bc3d9ae409390e98686d79d1ebe703d8d50bb086423fdacb
SPDX SBOMhttps://spdx.dev/Documentdhi.io/tigera-operator@sha256:bead99709d2bb7fa999ea6bb1f0e86905ff2ec0c05d563e31d911bc42227af8d