Sign inSign up
Cilium Operator

dhi.io/cilium-operator

Cilium Operator 1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.20-debian-fips, 1.20-debian13-fips, 1.20-fips, 1.20.2-debian-fips, 1.20.2-debian13-fips, 1.20.2-fips

Index digest:

sha256:3e048fec38aeea3352997c144fa44e4bb9b247d505588ba9db0645ffc619873c

Manifest digest:

sha256:ea42a4125501611b740a5c97134fdbb9f023bbd1aa15d4f2305cf4148c5db85d

Size

39.95 MB

Last pushed

8 hours ago

Vulnerabilities

0
0
0
0
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cilium-operator:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cilium-operator:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cilium-operator@sha256:777a447939df683204e3710cdbcbe1f48d7016d4d4975b577f70023dcf20a02b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cilium-operator@sha256:8b3cf7ce667cb236c7eba2e511f7b164e1d9c32dfde0183518ff96ce63fb408d
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/cilium-operator@sha256:4a7860fc01c678a22e7751f0fc12ae383aead627197043cb94812c2cc0ed6132
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cilium-operator@sha256:bcc910e7bf0ef728c21af307fdf48eb3008cbfbb64ea99874bc5980a615813e1
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/cilium-operator@sha256:c243ae02c4af3c1206033372594cd99a6011fba1b152ebd9c6eb84044a5d1e40
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cilium-operator@sha256:9764a19250ce1491bdf563f8f6226f83c002953168642cbf75c32651afcd0ba6
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cilium-operator@sha256:fee7e94dc13183bcc711e6ddf3346d0b88c48512211685577a648309f43bbe31
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cilium-operator@sha256:f5489e43f585a2da9188a6affcf457b242b46581528d405a8ecff41956a5ba55
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cilium-operator@sha256:fb9c621ce7474fc1ac32e78f6f25a953b8af52df7a171fe3de923dfc6f198065
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cilium-operator@sha256:d19f23d80948a0415a932806f7f2cb071b0325909392c5e747f892f5fafed25d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cilium-operator@sha256:7b3c627b5c3eb038600d5dca60b4d05f1f5422500a7662df2575b19c55b8f3ba
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cilium-operator@sha256:625551f86d0c17bb72c29250bf32eb8e21703cae0c7ef9689a8a46bf0e964b95
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cilium-operator@sha256:0a25185a2448a9aa6f3b6e665d722e154291551b44671acfc5336abde483a817
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cilium-operator@sha256:906ff769ce73f0bb7e8971af33d01c0b79008928ad85becad7454d31e60d44f2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cilium-operator@sha256:9a8128b662f7e859acbb8bda5f2025b5cd38f85c8ead3ad56b8fe6df670e3c99
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cilium-operator@sha256:7b3a358695bac7218a36e283b56865e5abf1a0bb63d2558332dcf021a0a5cd22
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cilium-operator@sha256:2cdcde16f07a22ab8e527a6ea10b4515d06f100c97c19c96cac8a76c461dc04c