Sign inSign up
Azure Service Operator

dhi.io/azure-service-operator

Azure Service Operator 2.x (dev)

CIS
linux/amd64
debian 13
Tags:

2-debian-dev, 2-debian13-dev, 2-dev, 2.21-debian-dev, 2.21-debian13-dev, 2.21-dev, 2.21.0-debian-dev, 2.21.0-debian13-dev, 2.21.0-dev

Index digest:

sha256:b476d1224e6fbb90a79e85d152b6d7aafe58e013f8ababb86d9cb00ffd3fa724

Manifest digest:

sha256:9c5b4cd4fc1ce9a0ec0d12fcf9b7bd1edd17e4e2ac48d9fc983729ad372309e3

Size

167.09 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/azure-service-operator:2-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/azure-service-operator:2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/azure-service-operator@sha256:0e1b9844e9a332904259d40abe18fd48614679104694c727fe44ca78f86198f0
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/azure-service-operator@sha256:8c8bc58d3a52201949114578367c5cc8524f21c61f46789bf359aa618fcd8faa
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/azure-service-operator@sha256:aa637134dc9e6d79c25ca02dc0aa44f5a576717c40ea89043464fea519b127e8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/azure-service-operator@sha256:36c65fcc5d67bbdf9af3bdea83ad7992d80f908d0bc4c694b1aebbbf8d15b29f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/azure-service-operator@sha256:fd02c7cc49fdecd7564e11836cc2a7f1cfeddf4fc14444d8c5a892d961d253f6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/azure-service-operator@sha256:54576ed0fb7a9f6abf4dd6a7909ea9b33f6a22488ddd75b78c46914f99654f9a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/azure-service-operator@sha256:d8ee5778e4d23e6cfb44227c4b30d0f6e926869c6363bf8cc1fe4a498c101ba1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/azure-service-operator@sha256:e089f1e056900c6cffd7c3e3c3e2e08ac42ab0223f29d30903664aac6b92cdd2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/azure-service-operator@sha256:192843a5a98d78e36a9b86d3ce079fb78117d6fdf389502e72191272fb4240f2
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/azure-service-operator@sha256:90105f5ebdff4542ece964c6c854b306a70b30495a9a9e71f908734c9c4fcf0f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/azure-service-operator@sha256:a6e5a9b4cf074c4a1a0a5ae38e72ca2cd16c7a2aa6327033c87e9356b057997e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/azure-service-operator@sha256:aae5890937b5e27fd38efc528ed13cd84b2b174037a75978453475c67bf5bf87
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/azure-service-operator@sha256:b71a0537104b66c1a2228a6f1b463bb14314af85d79acd5bdc153445a126ce66
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/azure-service-operator@sha256:ba4b04983ee5e4f89e87af3fd0a55a450dbb01a82bcd038052993ce68631d67b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/azure-service-operator@sha256:5228fcfb55e6564f8a2bbbbd9592f1e3add6eb92e9340117024d8d706bf37c65