Sign inSign up
Virt Operator

dhi.io/virt-operator

Virt Operator 1.9.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.9-debian-fips, 1.9-debian13-fips, 1.9-fips, 1.9.0-debian-fips, 1.9.0-debian13-fips, 1.9.0-fips

Index digest:

sha256:817f9de4839a37c5055c4c6445840d40273f22909eddcc384a63ec6a83a0227b

Manifest digest:

sha256:6abbf69db5d52db864e6253cec52ccaec3b38c2be7c6c78f6cc30c4e50e58a1c

Size

25.63 MB

Last pushed

20 hours ago

Vulnerabilities

0
2
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/virt-operator:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/virt-operator:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/virt-operator@sha256:dbdfb275e0469e1a6c6a629a4ff15cdfa566519b87e449bf42fdd2eb53098b4c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/virt-operator@sha256:e0ec15750a07b338acdc1ae6c8bddeb4b27cd1a2e9b71d7c734ac58ef86868f3
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/virt-operator@sha256:9c44134f4ca6829a4ef1e94960e9afa7b043aa992ece4762a6ecf09d3faa54c6
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/virt-operator@sha256:ff8323f04a40288210be808b7e162de27a021ae5a152830c82ecf682ed945608
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/virt-operator@sha256:bfef172f8e4909264e50ae563a096f5e942f60feb2dba5031411deea7cd7826e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/virt-operator@sha256:ce2561d6d12e79d145b61ce24f501cbeffadfabba98025db350787fb52d5a85a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/virt-operator@sha256:af058390e214557baa88653f29fae507e45327664e9e906e4d578a64c25911f6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/virt-operator@sha256:524d7008d76cf00bed9838643a407e625700190cb5ba74c474b6bb10b3657415
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/virt-operator@sha256:5d81475ef654280a24c324a8dc991a1b1d9a02ea34b89557c0f03164a3a2fedd
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/virt-operator@sha256:67ba691f2a1a1463754d87439fcca56a37e92b2a1409b9742a779ab169151e62
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/virt-operator@sha256:1f888906a5fe9bc04cb9c133d0f53270d4ee495d25f4546bc110f1ec8ebe95c5
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/virt-operator@sha256:1b5225f8d57b39258ff686e7cc8a62a12d00ea3fbd82a3048a4c5c9d4ff94717
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/virt-operator@sha256:faaa9d8637601118a202194692cafbc37e4d96bb0a0c4978e1a60efdfb008f6f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/virt-operator@sha256:38895b644f33b1d8fff20182aa5067273ae69d3783ea72b9fb967ece9184b66e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/virt-operator@sha256:f509599cb5c64c01a55c046241062a2eff1397fba7ca5e3e214fa199cc612da4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/virt-operator@sha256:7bb8607c6d61f330d3df6b445805a5d206014137352817a385a415c2389a1216
SPDX SBOMhttps://spdx.dev/Documentdhi.io/virt-operator@sha256:4d90064d3016ea7efa2097de2a9bdf3e2b8654ab05ef2f8beeeda8256df7a415